Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I've had really bad luck with their uptime. It doesn't help that they seem under constant DDOS attack.


Yeah, our DNS provider Zerigo had a nasty DDOS attack over Sunday that many sites got caught up in, including us.

As you can imagine, mitigating DDOS on a nameserver is tricky due to the nature of the requests coming in - harder to Deep Packet Inspect and scrub, or easily identify patterns of bad traffic access to zero-route.


1. third party zone transfers 2. Anycast DNS 3. Use more than one provider. 4. warm spares that are not in delegation until needed.


Yup, we're switching to multiple providers. The fact that there were already multiple geographically redundant IPs should have averted most issues, but someone made a highly-coordinated attack on the provider at all their IPs.

We learn and move on. I wonder how many other startups are going as far as using DNS from multiple providers? I still see many startups using Go Daddy for their DNS... :/




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: