[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <1176931903.31.5080@mint-julep.mondoinfo.com>
Date: Wed, 18 Apr 2007 16:40:26 -0500 (CDT)
From: Matthew Dixon Cowles <matt@...doinfo.com>
To: bugtraq@...urityfocus.com
Subject: Re: Windows DNS Cache Poisoning by Forwarder DNS Spoofing
[Bojan Zdrnja]
> I'm not sure what's the story with other DNS servers (djbdns, for
> example).
In regard to djbdns, I believe that that's answered at:
http://cr.yp.to/djbdns/dnscache.html
where it says:
dnscache does not cache (or pass along) records outside the
server's bailiwick; those records could be poisoned. Records for
foo.dom, for example, are accepted only from the root servers,
the dom servers, and the foo.dom servers.
Regards,
Matt
Powered by blists - more mailing lists