日本語版はこちら

Abstract

At JANOG39 in 2017, we presented a program titled “A story about DDoS attack countermeasures for DNS authoritative servers – Sakura Internet version” in which we shared actual failures that occurred and our subsequent efforts, and discussed DDoS countermeasures for DNS authoritative servers.

Five years have passed since then, and as we have come to see cloud first and cloud by default, systems are being built and operated based on the premise of cloud services, and DNS is no exception.

In response to the DNS waterboarding attack on Sakura Cloud’s DNS authoritative server service in 2022, we deployed L7 firewalls and middleware like dnsdist on the servers to mitigate the attack, and enhanced metrics capture.

In this session, we would like to share those efforts and discuss the detection of attacks and effective countermeasures for DNS authoritative server services.

Place

3F Conference Room

Date

Day2 Thursday, Jan 26th, 2023/14:00~14:45(45Minutes)

Presenter

長野 雅広
さくらインターネット株式会社

Masahiro Nagano (SAKURA internet Inc.)