July 25, 2008

DNS attack reminder

Ladies and Gentleman managing DNS servers.

Please, remind to review your DNS and firewall configurations in order to ensure random source ports!

I've seen several "patched" DNS servers going to the internet with fixed source ports, something that more or less nulls the patches released by the vendors.

Why not to test your DNS today? (tip by Rubens Kuhl Jr.)

https://www.dns-oarc.net/oarc/services/dnsentropy