DNS cache poisoning attacks -- are they real?

Florian Weimer fw at deneb.enyo.de
Sun Mar 27 21:46:43 UTC 2005


* Joe Maimon:

> Slightly OT to parent thread...on the subject of open dns resolvers.
>
> Common best practices seem to suggest that doing so is a bad thing.

There was some malware which contained hard-coded IP addresses of a
few open DNS resolvers (probably in an attempt to escape from
DNS-based walled gardens).  If one of your DNS resolvers was among
them, I'm sure you'd closed it to the general public, too -- and made
sure that your others were closed as well, just in case.



More information about the NANOG mailing list