Re: RFC 8482 implementation - minimizing Query Type ANY
Options
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-28-2019 04:47 PM
This widget could not be displayed.
This widget could not be displayed.
Advanced DNS Protection allows you to block or rate limit use of the ANY query in multiple ways.
- By default rule 130400100 under DNS Amplification and Reflection will rate limit at 5 reflection/amplifcation queries per second. Type ANY queries will trigger this rate limit. This rule can be tuned more aggresively if needed.
- Rule 130502800 under DNS Message types can be used to block Type ANY queries.
- Type ANY queries can be blocked and rate limited by fqdn or overall using custom ADP rules as well.