Preventing a particular type of nameserver abuse

Ondřej Surý ondrej at
Tue Apr 13 09:47:38 UTC 2021

Yes, the legitimate client would be susceptible to spoofing. No answer means larger time windows to guess the port+msgid combination.

Ondřej Surý — ISC (He/Him)

My working hours and your working hours may be different. Please do not feel obligated to reply outside your normal working hours.

> On 13. 4. 2021, at 11:31, Julien Salort <listes at> wrote:
> Is there really a usefulness to reply with code 5, instead of silently ignoring the request?

More information about the bind-users mailing list