Linux - SecurityThis forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.
Notices
Welcome to LinuxQuestions.org, a friendly and active Linux Community.
You are currently viewing LQ as a guest. By joining our community you will have the ability to post topics, receive our newsletter, use the advanced search, subscribe to threads and access many other special features. Registration is quick, simple and absolutely free. Join our community today!
Note that registered members see fewer ads, and ContentLink is completely disabled once you log in.
If you have any problems with the registration process or your account login, please contact us. If you need to reset your password, click here.
Having a problem logging in? Please visit this page to clear all LQ-related cookies.
Get a virtual cloud desktop with the Linux distro that you want in less than five minutes with Shells! With over 10 pre-installed distros to choose from, the worry-free installation life is here! Whether you are a digital nomad or just looking for flexibility, Shells can put your Linux machine on the device that you want to use.
Exclusive for LQ members, get up to 45% off per month. Click here for more info.
hi all,
i want to check the security of DNS server on our LAN which is connected to internet ,but i have no knowlege about this issue,whould some one explain what are the common attacks on DNS servers and what are the preventation actions against them ?
i have seen some information about creating chroot jail for increasing the security .
This is a huge topic. But basically, make sure that you're running an up to date version of BIND with all security fices enabled. Also make sure that only DNS slaves are allowed to do zone transfers (if it's a master server for any zones). Consider setting up RNDC (I think's that's the name...) for secure zone transfers and to prevent malicious people from trying to spoof your slave. DNS security is a huge field, encompassing stuff like this plus cache poisioning etc. Chrooting only helps a bit by limiting damage to the DNS server if there is a break in, but there's lots more that can go on. I would suggest doing a Web search on the topic for more details.
Of course, you need to follow general best practices for host security too (i.e. if root's password is toor, then you have a problem).
LinuxQuestions.org is looking for people interested in writing
Editorials, Articles, Reviews, and more. If you'd like to contribute
content, let us know.