[Tfug] DNS Vulnerability

Brian Murphy murphy+tfug at email.arizona.edu
Thu Jul 31 15:22:09 MST 2008


Quoting keith smith <klsmith2020 at yahoo.com>:
> An article on ABCnews.com is claiming a major DNS vulnerability.
>
> http://abcnews.go.com/Technology/AheadoftheCurve/story?id=5489156&page=1
>


Yep, it's true.  Patch your DNS servers to get randomized source ports
to slow the attack.  Ideally, separate your recursive servers (with
tight ACLs) from your authority servers as another layer of protection.

Brian

The opinions or statements expressed herein are my own and should not be
taken as a position, opinion, or endorsement of the University of
Arizona.






More information about the tfug mailing list