nanog mailing list archives

Re: DNS requests for 1918 space


From: bill <bmanning () karoshi com>
Date: Tue, 16 Mar 2004 10:08:28 -0800 (PST)



Can anyone point me at any papers that talk about security issues raised by
private networks passing dns requests for RFC 1918 private address space out
to their ISP's dns servers?

I'm aware of the issues involved with an ISP passing the requests on to the
root servers but was looking specifically for security type issues relating
to a private network passing the requests out to their ISP's dns servers.

Geo.

        http://www.nanog.org/mtg-0210/wessels.html
        has some very good information about some of the
        problems w/ leaked queries.

        http://as112.net/  has some mitigation stratagies.


--bill


Current thread: