nanog mailing list archives
Re: DNS cache poisoning attacks -- are they real?
From: Suresh Ramasubramanian <ops.lists () gmail com>
Date: Mon, 28 Mar 2005 10:19:33 +0530
On Sun, 27 Mar 2005 18:22:15 +0100, Brad Knowles <brad () stop mail-abuse org> wrote:
Abusing someone else's poorly configured resolvers is not the way to solve this problem, and it's a bad habit to get into.
Er, I forgot to mention that it was my ISP whose resolver I used, and I have a perfect right to use their resolver when necessary. I try not to, when I am traveling, given the latency. But it is not like, for example, using an open relay, or even using John Gilmore's open by design relay at toad.com. I dont know how, but dns requests to those resolvers worked, whereas my local resolver got proxied through their dns .. if it was a transparent proxy that'd not be the case. -srs
Current thread:
- Re: DNS cache poisoning attacks -- are they real?, (continued)
- Re: DNS cache poisoning attacks -- are they real? bmanning (Mar 27)
- Re: DNS cache poisoning attacks -- are they real? Joe Maimon (Mar 27)
- Re: DNS cache poisoning attacks -- are they real? Florian Weimer (Mar 27)
- Message not available
- Re: DNS cache poisoning attacks -- are they real? Florian Weimer (Mar 27)
- Message not available
- Re: DNS cache poisoning attacks -- are they real? Florian Weimer (Mar 29)
- Re: DNS cache poisoning attacks -- are they real? Randy Bush (Mar 27)
- Blocking port 53 Sean Donelan (Mar 27)
- Re: Blocking port 53 Randy Bush (Mar 27)
- Re: Blocking port 53 John Levine (Mar 27)
- how about the basics? [was: Re: Blocking port 53] Gadi Evron (Mar 28)
- Message not available
- Re: DNS cache poisoning attacks -- are they real? Suresh Ramasubramanian (Mar 27)
- Message not available
- Re: DNS cache poisoning attacks -- are they real? Suresh Ramasubramanian (Mar 28)