On CBS.com: Exclusive video from GHOST WHISPERER
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 6 of 10:
Next »
« Previous
'gotitright' doesn't... have it right...
The vulnerability at issue in the DNS Server incidents was a flaw in the RPC-based *management endpoints* on DNS servers. These listened on high ports > 1024 that *nobody* behind a firewall should have open. It doesn't matter if your DNS Server is authoritative or not -- you have no business with RPC listening on it and exposed to the world. How many Unix admins who left their name server's port 111 open to the world would keep their jobs?
Posted by: SecurityGeek_z   Posted on: 05/07/07 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

Microsoft to patch zero-day DNS flaw  Loverock Davidson | 05/03/07
Agreed  ITguy5678 | 05/07/07
Any given home user  epcraig | 05/07/07
Right, but home users aren't affected  SecurityGeek_z | 05/07/07
Firewalling DNS  gotitright | 05/07/07
'gotitright' doesn't... have it right...  SecurityGeek_z | 05/07/07
Not so fast...  SecurityGeek_z | 05/07/07
Loverock, you are an idiot...  SecurityGeek_z | 05/07/07
Agree w/ Everything Except  rkuhn040172@... | 05/07/07
Drat, They Did It Again  astro_z | 05/08/07

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement

SmartPlanet

  • Thought-provoking progressive ideas on diverse topics that intersect with technology, business, and life, and matter to the world at large. Visit SmartPlanet
  • More from IBM
  • Innovate your business' process model, play against the market, compete against others on our scoreboards and WIN! Try INNOV8 2.0: A BPM Simulator
  • Enabling Real-World Business Transformation through IBM Service Management Read the EMA Analyst Report
Click Here