North American Network Operators Group|
Date Prev | Date Next |
Date Index |
Thread Index |
Author Index |
Re: DNS cache poisoning attacks -- are they real?
- From: John Payne
- Date: Wed Mar 30 23:49:48 2005
On Mar 29, 2005, at 5:37 AM, Simon Waters wrote:
The answers from a recursive servers won't be marked authoritative (AA
set), and so correct behaviour is to discard (BIND will log a lame
message as well by default) these records.
As others have pointed out, BZZZZT
If your recursive resolver doesn't discard these records, suggest you
Yeah, problem is, it ain't my recursive resolver that's the problem...
I don't actually follow links in spam (shock, horror), just pointing
out the problem.
that works ;)