bind8.2 security issues

Steve Foster fosters at uk.psi.com
Mon Jul 1 11:39:21 UTC 2002


At 11:29 01/07/02 GMT, phn at icke-reklam.ipsec.nu wrote:

>Not entirely,   
>
>any packet that will cause an application ( and syslog is an application) to
>ask DNS for an answer is risky. 
>
>To reduce that , make shure /etc/resolv.conf points to a bind-9 in all
your systems
>exposed to Internet.



Hi, thanks for this, so the best option in the short-term is to upgrade all
our resolvers to use bind9 , i assume that i can use bind9.2.1 for this, as
this is the latest on the isc website.

Steve
Steve Foster
Senior Systems Administrator
PSINet Europe
Work: +44 (1223) 577322
Mobile: +44 (7720) 425911


More information about the bind-users mailing list