{"draft":"draft-ietf-dnsop-reflectors-are-evil-06","doc_id":"RFC5358","title":"Preventing Use of Recursive Nameservers in Reflector Attacks","authors":["J. Damas","F. Neves"],"format":["ASCII","HTML"],"page_count":"7","pub_status":"BEST CURRENT PRACTICE","status":"BEST CURRENT PRACTICE","source":"Domain Name System Operations","abstract":"This document describes ways to prevent the use of default configured\r\nrecursive nameservers as reflectors in Denial of Service (DoS)\r\nattacks. It provides recommended configuration as measures to\r\nmitigate the attack. This document specifies an Internet Best Current \r\nPractices for the Internet Community, and requests discussion and \r\nsuggestions for improvements.","pub_date":"October 2008","keywords":["[--------]","denial of service","dos"],"obsoletes":[],"obsoleted_by":[],"updates":[],"updated_by":[],"see_also":["BCP0140"],"doi":"10.17487\/RFC5358","errata_url":null}