ICANN/GNSO GNSO Email List Archives

[council]


<<< Chronological Index >>>    <<< Thread Index >>>

[council] SAC065: SSAC Advisory on DDoS Attacks using the DNS

  • To: "council@xxxxxxxxxxxxxx" <council@xxxxxxxxxxxxxx>
  • Subject: [council] SAC065: SSAC Advisory on DDoS Attacks using the DNS
  • From: Bruce Tonkin <Bruce.Tonkin@xxxxxxxxxxxxxxxxxx>
  • Date: Sat, 22 Feb 2014 21:47:21 +0000
  • Accept-language: en-AU, en-US
  • List-id: council@xxxxxxxxxxxxxx
  • Sender: owner-council@xxxxxxxxxxxxxx
  • Thread-index: Ac8wF6WCTy2M5iQIR6aDk1Cpmr5NQQ==
  • Thread-topic: SAC065: SSAC Advisory on DDoS Attacks using the DNS

Hello All,

Attached is an advisory from SSAC on DDoS attacks:


Specifically, the SSAC strongly recommends that:

1. ICANN should help facilitate an Internet-wide community effort to reduce the 
number of open resolvers and networks that allow network spoofing. This effort 
should involve measurement efforts and outreach.

2. All network operators should take immediate steps to prevent network address 
spoofing.

3. Recursive DNS server operators should take immediate steps to secure open 
recursive DNS servers.

4. Authoritative DNS server operators should support efforts to investigate 
authoritative response rate limiting.

5. DNS server operators should put in place operational processes to ensure 
that their DNS software is regularly updated and communicate with their 
software vendors to keep abreast of the latest developments.

6. Manufacturers and/or configurators of customer premise networking equipment, 
including home networking equipment, should take immediate steps to secure 
these devices and ensure that they are field upgradable when new software is 
available to fix security vulnerabilities, and aggressively replace the 
installed base of non-upgradeable devices with upgradeable devices.

Regards,
Bruce Tonkin

Attachment: SAC065 Board Cover Letter 18 February 2014.doc
Description: SAC065 Board Cover Letter 18 February 2014.doc

Attachment: SAC065 SSAC Advisory on DDoS Attacks Leveraging DNS Infrastructure 18 February 2014.pdf
Description: SAC065 SSAC Advisory on DDoS Attacks Leveraging DNS Infrastructure 18 February 2014.pdf



<<< Chronological Index >>>    <<< Thread Index >>>