BIND 9 TCP Problems on Solaris

phn at icke-reklam.ipsec.nu phn at icke-reklam.ipsec.nu
Mon Apr 29 16:29:11 UTC 2002


Crist J. Clark <cjclark at alum.mit.edu> wrote:
> [Note: I tried this first on a Solaris newsgroup, and it was suggested
> this may be a better forum.]

> I'm having trouble with a pair of hosts running BIND 9.1.3rc1 on,

>   SunOS ns1 5.8 Generic_108528-12 sun4u sparc SUNW,Ultra-5_10

> When you scan the DNS TCP port, 53/tcp, with nmap or some other tool
> that follows the pattern,

>   scanner -> SYN      -> target
>   scanner <- SYN, ACK <- target
>   scanner -> ACK      -> target
>   scanner -> RST, ACK -> target

This might be one of the things "cleaned-up" in later releases of bind-9

Why don't you upgrade to at least 9.2.0 ( 9.2.1 is in the pipes) ?

%% stuff deleted to save space %%%

> Is this a known bug? I wasn't able to find anything in this group's


> Google archive. Is there a BIND fix (if it is an application problem)
> or a Solaris patch (if it is the system) that I am missing?

> Thanks.
> -- 
> Crist J. Clark                     |     cjclark at alum.mit.edu
>                                    |     cjclark at jhu.edu
> http://people.freebsd.org/~cjc/    |     cjc at freebsd.org


-- 
Peter Håkanson         
        IPSec  Sverige      (At the Riverside of Gothenburg, home of Volvo)
           Sorry about my e-mail address, but i'm trying to keep spam out.
	   Remove "icke-reklam" and it works.


More information about the bind-users mailing list