[Tfug] DNS Vulnerability
Brian Murphy
murphy+tfug at email.arizona.edu
Thu Jul 31 15:22:09 MST 2008
Quoting keith smith <klsmith2020 at yahoo.com>:
> An article on ABCnews.com is claiming a major DNS vulnerability.
>
> http://abcnews.go.com/Technology/AheadoftheCurve/story?id=5489156&page=1
>
Yep, it's true. Patch your DNS servers to get randomized source ports
to slow the attack. Ideally, separate your recursive servers (with
tight ACLs) from your authority servers as another layer of protection.
Brian
The opinions or statements expressed herein are my own and should not be
taken as a position, opinion, or endorsement of the University of
Arizona.
More information about the tfug
mailing list