DNS Denial Of Service

Barry Margolin barmar at bbnplanet.com
Wed Jun 23 17:52:34 UTC 1999


In article <37708731.1E2E65E9 at colliander.pp.se>,
Erik  <erik at colliander.pp.se> wrote:
>When and if DNSSEC is used globally all the way from the root servers and down
>the hierarchy all the way, it will make it alot harder to poison cache.

That's a big "if".  I wouldn't be surprised if at least 60% of the
nameservers on the Internet are still running BIND 4.9.3 and older.  And
these days, I suspect there are more servers coming online running
Microsoft DNS than BIND 8.

-- 
Barry Margolin, barmar at bbnplanet.com
GTE Internetworking, Powered by BBN, Burlington, MA
*** DON'T SEND TECHNICAL QUESTIONS DIRECTLY TO ME, post them to newsgroups.
Please DON'T copy followups to me -- I'll assume it wasn't posted to the group.



More information about the bind-users mailing list