(Msg. 1) Posted: Sun Jul 20, 2008 3:09 am
Post subject: Fasten your seatbelts, it's going to be a bumpy ride! Add to elertz Archived from groups: microsoft>public>security>virus, others (more info?)
(Msg. 2) Posted: Sun Jul 20, 2008 3:10 am
Post subject: Re: Fasten your seatbelts, it's going to be a bumpy ride! Add to elertz [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
"Kayman" <kaymanDeleteThis.DeleteThis@operamail.com> wrote in message
news:#slCVKg6IHA.3816@TK2MSFTNGP03.phx.gbl...
> DNS flaw discoverer says more permanent fixes will be needed
> Current patch options merely stopgaps; worst attacks likely on the way
> http://www.computerworld.com/action/article.do?command=viewArticleBasi...rticleI >
> Eagerly awaiting ZA's reaction
Well, good, because I'd hate to think the current state of patches are the
best we can do.
On Windows, we have an over-full netstat display, because DNS reserves 2500
ports; some services that haven't set the ReservedPorts registry key find
that their ports are sometimes (randomly) blocked by DNS reserving those
ports first.
On Linux, or other platforms using BIND, we have UDP-based daemons receiving
DNS responses on a random basis, because the DNS server accidentally picks
their port to send from.
"needs a little work" is a good description.
Alun.
~~~~
--
Texas Imperial Software | Web: http://www.wftpd.com/
23921 57th Ave SE | Blog: http://msmvps.com/alunj/
Woodinville WA 98072-8661 | WFTPD, WFTPD Pro are Windows FTP servers.
Fax/Voice +1(425)807-1787 | Try our NEW client software, WFTPD Explorer.
(Msg. 3) Posted: Sun Jul 20, 2008 4:41 am
Post subject: Re: Fasten your seatbelts, it's going to be a bumpy ride! Add to elertz [Login to view extended thread Info.] Archived from groups: microsoft>public>security>virus, others (more info?)
By the sound of things it's probably better NOT to apply these patches to
internal, non-internet-facing DNS servers, as if I read correctly they could
randomly interfere with other unrelated functions of the server.
Would you agree?
"Alun Jones" wrote:
> On Windows, we have an over-full netstat display, because DNS reserves 2500
> ports; some services that haven't set the ReservedPorts registry key find
> that their ports are sometimes (randomly) blocked by DNS reserving those
> ports first.
>
> On Linux, or other platforms using BIND, we have UDP-based daemons
> receiving DNS responses on a random basis, because the DNS server
> accidentally picks their port to send from.
>
> "needs a little work" is a good description.
>
(Msg. 4) Posted: Sun Jul 20, 2008 2:08 pm
Post subject: Re: Fasten your seatbelts, it's going to be a bumpy ride! Add to elertz [Login to view extended thread Info.] Archived from groups: microsoft>public>security>virus, others (more info?)
On Sat, 19 Jul 2008 23:37:07 -0700, Alun Jones wrote:
> "Kayman" <kaymanDeleteThis RemoveThis @operamail.com> wrote in message
> news:#slCVKg6IHA.3816@TK2MSFTNGP03.phx.gbl...
>> DNS flaw discoverer says more permanent fixes will be needed
>> Current patch options merely stopgaps; worst attacks likely on the way
>> http://www.computerworld.com/action/article.do?command=viewArticleBasi...rticleI >>
>> Eagerly awaiting ZA's reaction >
> Well, good, because I'd hate to think the current state of patches are the
> best we can do.
>
> On Windows, we have an over-full netstat display, because DNS reserves 2500
> ports; some services that haven't set the ReservedPorts registry key find
> that their ports are sometimes (randomly) blocked by DNS reserving those
> ports first.
>
> On Linux, or other platforms using BIND, we have UDP-based daemons receiving
> DNS responses on a random basis, because the DNS server accidentally picks
> their port to send from.
>
> "needs a little work" is a good description.
>
All times are: Eastern Time (US & Canada) (change)
Page 1 of 1
You can post new topics in this forum You can reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum