[kwlug disc.] DNS security threat

john at netdirect.ca john at netdirect.ca
Fri Aug 1 12:17:59 EDT 2008


> One big problem appears to be NAT -- even if the upstream DNS server
> is okay, the way that NAT deals with ports can screw things up again.
> I am worried about this because our IPCop box is doing NAT. 

Here's an idea:

http://cipherdyne.org/blog/2008/07/mitigating-dns-cache-poisoning-attacks-with-iptables.html-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://listserv.ccjclearline.com/pipermail/kwlug-disc/attachments/20080801/e24ac464/attachment.htm


More information about the KWLUG-Disc mailing list