from Hacker News

DDOS on Namecheap Free DNS and Default DNS V2

by hmart on 2/20/14, 4:21 PM with 113 comments

  • by ted0 on 2/20/14, 4:51 PM

    We are in the process of mitigating a large scale DDoS attack against our global DNS platform. We expect service to return to normal very shortly. Stay tuned and let me know if you have any questions. ted@namecheap.com
  • by tinco on 2/20/14, 4:38 PM

    Weird, I haven't researched DNS as well as I should have. I always lived under the impression that there was this extensive DNS cache network where intermediaries responded to queries with cached results from root DNS servers.

    Instead, the second that this DDos hits is the second we have websites stopping working.

    How is it that in this day and age we can't have distributed caches of DNS entries at our providers of full dns databases. I mean there can't be more than like a few billion dns entries in the world total, which fits easily in a modern desktop computers RAM.

    If that is an underestimate, I can't believe a single modern server wouldn't be able to mirror the world's DNS queries for at least a providers worth of users.

  • by plasma on 2/20/14, 5:18 PM

    How would one add (say) AWS Route53 as a secondary DNS?

    I assume you'd make sure the DNS records are the same in both DNS portals; and then add Route53 as 3rd & 4th nameservers with the first and second still being Namecheap?

  • by motoford on 2/20/14, 5:09 PM

    If your site is down and you are on v2, Switch to v1. It only takes a minute and it works.
  • by blissofbeing on 2/21/14, 5:01 AM

    I recently switched most of my domains to DNSMadeEasy because they are constantly in the top for speed[1], provide a top tier anycast network and for what you get are a great value.

    If you want speed and readability I suggest switching to a paid DNS provider.

    1: http://www.solvedns.com/dns-comparison/2014/01

    BTW I'm not in any way affiliated, just like the service.

  • by naiyt on 2/20/14, 6:46 PM

    Best of luck to their support team. Outages can make tech support's life miserable. If you call in, just remember the person on the other side of the phone has likely been yelled at all morning for something that wasn't their fault. Totally reasonable to be upset at the situation, just don't take it out on the tech you're talking to!
  • by kennhardy on 2/20/14, 6:33 PM

    May this have been a problem lasting for a week?

    I am monitoring a few servers with DNS records. And the last week I have found all the servers unresponsive (by DNS, not tried directly) from time to time. And after an extensive amount of troubleshooting I am unable to find a problem.

  • by hmart on 2/20/14, 10:20 PM

    If you're affected, you can switch your domains to their DNSv1. Seems pretty quick for most people.

    Via https://news.ycombinator.com/user?id=edwhitesell

  • by User7 on 2/20/14, 8:38 PM

    I don't know how this website works, but I can't see the latest posts at the top of the page! I'm looking for the latest info on the issue. Are you up and running? Should I move back to v2? Thanks
  • by derwiki on 2/20/14, 4:38 PM

    Is there any point in freaking out or do we just have to wait this one out?
  • by avb on 2/20/14, 4:36 PM

    Any good suggestions for alternative DNS providers?
  • by srik on 2/20/14, 6:10 PM

    This is so embarrassing for me. We just put out our school computer group's website up and boom - murphys law.
  • by MichaelTieso on 2/20/14, 4:40 PM

    That would explain why I'm getting a massive amount of tickets from my clients why their site is down.
  • by kennhardy on 2/20/14, 4:47 PM

    Down for me as well. Lost access to absolutely all of my company's services. TTL 60...
  • by micah63 on 2/20/14, 4:30 PM

    yup, our app is down : (