DNS Flood -- Help!

Simon Waters Simon at wretched.demon.co.uk
Wed Jan 9 18:49:27 UTC 2002


William Stacey wrote:
> 
> The query-source port is a high-numbered (i.e. ephemeral) port
> with a query to a DNS server.

Some nameservers issue queries with source port 53 (or other
specified port), so don't assume it will be >1023, except when
creating firewall rules for outgoing traffic from your own
networks where you control the configuration of the DNS servers.


More information about the bind-users mailing list