LinuxQuestions.org

LinuxQuestions.org (/questions/)
-   Syndicated Linux News (https://www.linuxquestions.org/questions/syndicated-linux-news-67/)
-   -   LXer: Restricting zone transfers with IP addresses in BIND DNS Server (https://www.linuxquestions.org/questions/syndicated-linux-news-67/lxer-restricting-zone-transfers-with-ip-addresses-in-bind-dns-server-591548/)

LXer 10-13-2007 02:40 PM

LXer: Restricting zone transfers with IP addresses in BIND DNS Server
 
Published at LXer:

DNS server can be attacked using various techniques such as:
[a] DNS spoofing

[b] Cache poisoning

[c] Registration hijacking

One of the simplest ways to defend is limit zone transfers between nameservers by defining ACL. I see many admin allows BIND to transfer zones in bulk outside their network or organization. There is no need to do this. Remember you don't have to make an attacker's life easier. Restricting zone transfers with IP addresses in BIND DNS Server

Read More...


All times are GMT -5. The time now is 06:30 AM.