ref: b346e0e2c7d02b7fa1e67ab84ec981db9924f024
parent: 1620e222d8d4ade3c12f566bc3d689682a318e39
author: Aaron Lin <jrmu@inter9.org>
date: Wed Oct 16 01:59:33 EDT 2024
Add note about DDoS amplification attacks
--- a/ndb-p9.ms
+++ b/ndb-p9.ms
@@ -7,7 +7,8 @@
.PP
The flag -s allows the DNS server to answer requests sent to UDP port 53.
-r allows ndb/dns to act as a resolver; -R causes ndb/dns to ignore
-recursive lookups on behalf of remote systems.
+recursive lookups on behalf of remote systems. This may help
+prevent DDoS amplification attacks.
.PP
Note: You *must* run ip/ipconfig before running ndb/dns (and possibly other
network services). Otherwise, you might see errors like: