Hacker News new | ask | show | jobs
by tptacek 3794 days ago
Not that I want to wade into the "don't use D.O." part of this argument, but, in practice, nobody does this. Virtually every deployment environment I've ever seen with more than 4 hosts in it would be fatally compromised by an attacker who could reach any IP address in that environment.
1 comments

True. I haven't heard folks other than Google explicitly talking about this as a best practice.