Security Incidents mailing list archives
Re: DNS Scanning for blocking
From: Nexus <nexus () PATROL I-WAY CO UK>
Date: Fri, 22 Dec 2000 16:49:49 -0000
True, but someone that can be bothered, can script a DNS walk though your
entire registered RFC 1918 public block and get it that way ;-)
Regards,
JJ (who's written one)
Happy Beltane ;-)
----- Original Message -----
From: "Mathieu Mourez" <matt () CPNICORE COM>
To: <INCIDENTS () SECURITYFOCUS COM>
Sent: Friday, December 22, 2000 3:07 PM
Subject: Re: DNS Scanning for blocking
[snip]
BIND 8 supports the 'allow-transfer' directive to restrict which hosts can
AXFR
your zone files. If you want to let other people to download your zone,
you
may even just negate surfcontrol's IP block.
[snip] ____________________________________________ http://1cis.com Free E-mail Servers with unlimited mailboxes 1st Class Internet Solutions
Current thread:
- DNS Scanning for blocking Zeffie (Dec 21)
- Re: DNS Scanning for blocking Jonathan Rickman (Dec 21)
- Re: DNS Scanning for blocking Mathieu Mourez (Dec 22)
- Re: DNS Scanning for blocking Nexus (Dec 22)
- Re: DNS Scanning for blocking Mathieu Mourez (Dec 22)
- <Possible follow-ups>
- Re: DNS Scanning for blocking Abe Getchell (Dec 21)
- Re: DNS Scanning for blocking Jonathan Rickman (Dec 21)
