request queue

Kevin Darcy kcd at daimlerchrysler.com
Thu Oct 12 20:23:35 UTC 2000


Well, Dynamic Update *is* a good thing, but probably capable of abuse, like any
tool.

What makes you think Win2K -- or Dynamic Update, for that matter -- had
anything to do with the particular abomination you discovered? Looks more to me
like someone is updating their web-hosting DNS with a simple-minded script,
that doesn't bother checking if a PTR already exists before adding it. It also
seems like they don't grasp the concept of aliases.


- Kevin

peter at icke-reklam.ipsec.nu.invalid wrote:

> omphile <omphile at ec.bw> wrote:
> > my server keeps displaying the following error message.
>
> > Oct 11 15:37:49 savuti named[17057]: ns_resp: TCP truncated:
> > "191.15.164.209.in-addr.arpa" IN PTR
>
> I looked at this one, and woaw, THIS IS WHAT Win2000 and dynamic
> updates gives the world :
>
> ; <<>> DiG 8.2 <<>> 191.15.164.209.in-addr.arpa any
> ;; res options: init recurs defnam dnsrch
> ;; got answer:
> ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 4
> ;; flags: qr rd ra; QUERY: 1, ANSWER: 328, AUTHORITY: 4, ADDITIONAL: 0
> ;; QUERY SECTION:
> ;;      191.15.164.209.in-addr.arpa, type = ANY, class = IN
>
> ;; ANSWER SECTION:
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  www.checkmyhospitalbill.com.
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  ftp.checkmyhospitalbill.net.
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  checkmydoctorbills.com.
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  ftp.medpinion.com.
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  www.medpinion.com.
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  medpinion.com.
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  dentalallies.org.
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  ftp.medicalbill.org.
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  medicalbill.org.
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  ftp.dentistbill.net.
> 191.15.164.209.in-addr.arpa.  11h59m42s IN PTR  www.dentistbill.net.
>
> (i'll save the net all 328 answers :-)
>
> ;; AUTHORITY SECTION:
> 15.164.209.in-addr.arpa.  11h55m55s IN NS  nameserver3.concentric.net.
> 15.164.209.in-addr.arpa.  11h55m55s IN NS  nameserver.concentric.net.
> 15.164.209.in-addr.arpa.  11h55m55s IN NS  nameserver1.concentric.net.
> 15.164.209.in-addr.arpa.  11h55m55s IN NS  nameserver2.concentric.net.
>
> ( blame concentric for this !)
>
> Anyone still convinced that dynamic updates is A Good Thing ?






More information about the bind-users mailing list