ietf-mailsig
[Top] [All Lists]

Re: Question about fenton-identified-mail-01

2004-10-22 06:38:39

--- Cullen Jennings <fluffy(_at_)cisco(_dot_)com> wrote:

in section 9.1.1 an attack is considered where all the email addresses are
spoofed and sent to many locations to cause an DOS attack on the key server.

...

correlate enough that caching ends up significantly reducing the hits to the
KRS.

Given that caching is entirely optional, adds a layer of deployment complexity
and adds almost no benefit to most receivers, I would not want to rely on
wide-spread deployment as a defense. The internet only deploys what it has to,
not what it should do.


Mark.


<Prev in Thread] Current Thread [Next in Thread>