4 ms·
We could have prevented the replay/amplification dos attacks that use DNS by making DNS use TCP. In practice though the only way to "fix" DNS that would've wor
by LK5ZJwMwgBbHuVI 3y ago
We could have prevented the replay/amplification dos attacks that use DNS by making DNS use TCP.
In practice though the only way to "fix" DNS that would've worked in the 80s would've probably been to require the request be padded to larger than the response...
- smallnix 3y agoBut TCP is way more complex
- LK5ZJwMwgBbHuVI 3y ago... yeah? I know? "In practice though the only way to "fix" DNS that would've worked in the 80s would've probably been to require the request be padded to larger than the response..." It's not as complex as some "mutual authentication" scheme though lmao