Hi there,
I need to set up a DNS server which is accessible from the whole internet. I have not chosen a DNS software yet, so maybe we could discuss about some, e.g. bind, dnsmasq, ...
My biggest concerns are dns amplification attacks, I don't want my server to be part of this.
Is it already possible to protect DNS servers from spoofing
attacks? Maybe just by rate-limiting the requests, without breaking legit
requests?
Best regards,
Michael