DNS amplification prevention #2727
Replies: 4 comments
-
Tbh, I don't like the geo-blocking approach, I think we can come up with something smarter than that. I've marked the issue as "question" and "help wanted". If anyone has any ideas of how to handle DNS amplification better than the current way (20rps rate limit by default), please comment here. |
Beta Was this translation helpful? Give feedback.
-
I suggest #805 |
Beta Was this translation helpful? Give feedback.
-
#805 is reasonable, but I'd like to avoid adding new configuration settings. |
Beta Was this translation helpful? Give feedback.
-
@ameshkov Then I don't know what to offer |
Beta Was this translation helpful? Give feedback.
-
it,s possible added option for rejected / drop whois by country
example allowed only Whois FR and rejected others RU BZ PT ........
because when ppl use adh for ddos if ban ip good but ip dynamic problem
thank you
Beta Was this translation helpful? Give feedback.
All reactions