Mitigating DNS amplification attacks

On May 1, 2013, at 5:42 PM, Jeff Wheeler wrote:

> The public list of smurf amplifiers turned out to be the only way to really deal with it.

It certainly helped; but the real solution was to get Cisco, et. al. to disable directed broadcasts by default.

