Watch it: Multiple DNS implementations vulnerable to cachepoisoning

Jay R. Ashworth jra at baylink.com
Thu Jul 10 18:58:18 IST 2008


On Thu, Jul 10, 2008 at 01:06:55PM +0100, Peter Farrow wrote:
> > Have you made sure that in named.conf there are no
> > 
> >   query-source    port 53;      
> >   query-source-v6 port 53;

>    If you're running a public DNS server or a DNS server for your LAN clients
>    then these lines are an extremely good idea...

To clarify Phil's followup: no, they're not.

Cheers,
-- jra
-- 
Jay R. Ashworth                   Baylink                      jra at baylink.com
Designer                     The Things I Think                       RFC 2100
Ashworth & Associates     http://baylink.pitas.com                     '87 e24
St Petersburg FL USA      http://photo.imageinc.us             +1 727 647 1274

	     Those who cast the vote decide nothing.
	     Those who count the vote decide everything.
	       -- (Josef Stalin)


More information about the MailScanner mailing list