On The Insider: Britney's Bikini-Clad Top 10
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 16 of 26:
Next »
« Previous
Yes, certainly vulnerable to that
So, if you are on comcast or something of the sort, and the attacker is hijacking it's cache, your internal DNS server is still likely to get it's answers from the ISP's DNS server.

Yeah, but everyone is vulnerable to that, whether or not they run their own DNS server. I would still be vulnerable to that even if I patched my server.

Updating this machine is a bit of a pain to be honest because it is running either SUSE 10.1 or 10.2 (can't remember) and the patch management takes forever to run. One of these days I'll upgrade it to 11.0 but I hate to upgrade things that are currently working just fine.
Posted by: NonZealot   Posted on: 07/24/08 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

TTL  jahday | 07/24/08
He explained...  nmcfeters | 07/24/08
Close...  annominous | 07/24/08
Thanks for the clarification (NT)  nmcfeters | 07/24/08
Are private DNS servers exploitable?  NonZealot | 07/24/08
Not sure  nmcfeters | 07/24/08
Re: Are private DNS servers exploitable?  natron_ | 07/24/08
Re: Are private DNS servers exploitable?  natron_ | 07/24/08
Indeed.  jahday | 07/24/08
I'm 99% sure my router doesn't do DNS  NonZealot | 07/24/08
Unless  nmcfeters | 07/24/08
Yes  nmcfeters | 07/24/08
Yes and no  annominous | 07/24/08
Thanks for the answers, all of you  NonZealot | 07/24/08
Well... you might be a bigger target then you think  nmcfeters | 07/24/08
Yes, certainly vulnerable to that  NonZealot | 07/24/08
SuSE 10.2 works- DON'T UPGRADE  r_widell | 07/24/08
Has someone else confirmed this?  nmcfeters | 07/25/08
RE: Kaminsky suggests long-term fix will still have to be determined  annominous | 07/24/08
Indeed (NT)  nmcfeters | 07/24/08
Right.  jahday | 07/24/08
Actually  nmcfeters | 07/24/08
RE: TTL  natron_ | 07/24/08
Yes, this is correct  nmcfeters | 07/24/08
It would be better to handshake using UDP...  mrlinux | 07/25/08
RE: Kaminsky suggests long-term fix will still have to be determined, but patch now, or pay soon  phatkat | 07/25/08

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Enterprise Applications

  • Check out some of the easiest and most powerful ways to boost productivity while saving money on your application infrastructure. See ZDNet's comprehensive Enterprise Application resource center, now!
  • New Online Dashboard
  • Read about top issues IT decision-makers face every day, plus get cost effective solutions to real life IT problems. Oracle Topline