LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 01-08-2014, 09:44 AM   #1
anonb
LQ Newbie
 
Registered: Jan 2014
Posts: 1

Rep: Reputation: Disabled
Vulnerabilities in syslog and dns


Are there any vulnerabilities in having One server provide syslog and dns services?
 
Old 01-08-2014, 11:46 AM   #2
TenTenths
Senior Member
 
Registered: Aug 2011
Location: Dublin
Distribution: Centos 5 / 6 / 7
Posts: 3,475

Rep: Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553
From the zero information you give us the answer is "probably".

Try picking a Linux distribution and versions of the packages and research them.

All servers are vulnerable to something, new exploits are being discovered all the time.

You can mitigate and minimize attack footprints in all server implementations by uninstalling unused services and firewalling with ACLs anything that's left open.
 
Old 01-09-2014, 02:53 AM   #3
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
...additionally,
Quote:
Originally Posted by anonb View Post
Are there any vulnerabilities in having One server provide syslog and dns services?
did you perchance meant to say "risks" instead of "vulnerabilities"? Doug McIlroy back then explained Unix philosophy saying "write programs that do one thing and do it well" and this applies to service isolation as well. Usually one requires a syslog server for particular reasons and here confidentiality, integrity and availability have a different meaning (and result) compared to a public name server. Simply put using single purpose machines allows you to focus on securing and strengthening the server for its task.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
syslog-ng not resolving DNS names noir911 Linux - Server 2 07-28-2008 03:02 AM
syslog-ng & DNS iakor Linux - Server 0 06-23-2008 11:26 PM
Syslog and Massive amount of DNS requests... ddenton Linux - Server 3 09-10-2007 08:36 AM
syslog error - DHCP or DNS problem ? czezz Linux - Networking 2 06-19-2006 04:28 PM
Syslog and DNS ddelao Linux - Networking 3 04-30-2005 08:56 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 03:32 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration