Linked by Thom Holwerda on Sun 9th Apr 2006 12:49 UTC, submitted by rycamor
Legal FreeBSD developer Poul-Henning Kamp (PHK) happens to run a tier-1 NTP server, intended only for use by ISPs' main servers in Denmark, and specifically not intended for individual client connections, not to mention client connections from anywhere else in the world. He offers this service pro bono to ISPs. Unfortunately, D-Link has decided to abuse the open nature of the NTP protocol and has actually hard-coded PHK's server hostname in the firmware of several of their home network products. Since contacting D-Link yielded no results, PHK went public.
Permalink for comment 113116
To read all comments associated with this story, please click here.
RE: Force
by cubidou on Sun 9th Apr 2006 15:59 UTC in reply to "Force"
Member since:

You're missing the point. The problem is not the server or its load. The problem is the bandwidth generated by the requests from the D-Link devices.

Step 1 and 2 are not feasible because filtering is expensive and it would have to be done much earlier than on the server itself.

Step 3 and 4 won't change the fact that bandwidth will be generated. It's not like a single IP address can suddenly disappear. Packets will still arrive, even if there's no reply.

The only thing PHK can do is changing the name of the server and letting the old one point to That would solve the bandwith issue, but would require all legitimate users to change their configuration.

Quentin Garnier.

Reply Parent Score: 5