From d12891f9e75139ed1eadb243574ce5cf4b2a60cb Mon Sep 17 00:00:00 2001 From: "Menno E. Duursma" Date: Tue, 11 May 2010 22:54:43 +0200 Subject: network/dnsflood: Added to 12.1 repository --- network/dnsflood/README | 11 +++++++++++ 1 file changed, 11 insertions(+) create mode 100644 network/dnsflood/README (limited to 'network/dnsflood/README') diff --git a/network/dnsflood/README b/network/dnsflood/README new file mode 100644 index 0000000000000..be66b71d11c54 --- /dev/null +++ b/network/dnsflood/README @@ -0,0 +1,11 @@ +DNS Flood Detector was developed to detect abusive usage levels on high traffic +nameservers and to enable quick response in halting the use of one's nameserver +to facilitate spam. + +DNS Flood Detector uses libpcap (in non-promiscuous mode) to monitor incoming +dns queries to a nameserver. The tool may be run in one of two modes, either +daemon mode or "bindsnap" mode. In daemon mode, the tool will alarm via syslog. +In bindsnap mode, the user is able to get near-real-time stats on usage to aid +in more detailed troubleshooting. + +A /etc/rc.d/rc.dnsflood daemon control script is aditionally included. -- cgit v1.2.3