Chapter 37 System
ZyWALL ATP Series User’s Guide
697
In a DNS amplification attack, an attacker sends a DNS name lookup request to an open DNS server
with the source address spoofed as the victim’s address. When the DNS server sends the DNS record
response, it is sent to the victim. Attackers can request as much information as possible to maximize the
amplification effect.
Configure the
Security Option Control
section in the
Configuration > System > DNS
screen (click
Show
Advanced Settings
to display it) if you suspect the Zyxel Device is being used (either by hackers or by a
corrupted open DNS server) in a DNS amplification attack.
Figure 460
Configuration > System > DNS