Re: BIND 9 Windows NT / Windows 2000 Binary Kit

From: Hal Dell (hdell_at_EPODWORKS.NET)
Date: 07/09/03

  • Next message: Steve Armstrong: "WHERE ARE NT4 OLD PASSWORDS STORED"
    Date:         Tue, 8 Jul 2003 21:01:00 -0400
    To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM
    
    

    I would not recommend anyone to use the ISC Windows NT / Windows 2000 Binary Kit
    for Bind 9.2.2 in a Windows 2003 production environment without extreme caution.
    Bind 9.2.2 has not be QAed for Windows 2003 and while the named server seems to
    function well, limited testing has shown that a simple rndc reload command will
    cause the named server to crash.

    This is true even when using non-matching hmac-md5 secret keys for the control
    por thus this could open up a server to a possible DOS attack. All that needs to
    be known is the Control IP address and Port. Finally, I would like to see if
    other folks can duplicate what I have found about rndc.

    Hal Dell & Bruce Reichley
    Managing Partner
    ePodWorks.net, Inc.
    Willow Grove, PA 19090
    +1-215-830-0662 (Voice)
    +1-215-659-3605 (Fax)
    Need help! Find it at support@ePodWorks.net

    oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo
    Are You "Certifiable"? Summer's Hottest Certification Just Got HOTTER!

    With a growth rate exceeding 110%, the TICSA security practitioner
    certification is one of the hottest IT credentials available. And now, for
    a limited time, you can save 33% off of the TICSA certification exam! To
    learn more about the TICSA certification, and to register as a TICSA
    candidate online, just go to

    http://www.trusecure.com/offer/s0100/

    oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo


  • Next message: Steve Armstrong: "WHERE ARE NT4 OLD PASSWORDS STORED"

    Relevant Pages

    • Re: MS03-026 - are you patched? Windows Update isnt sure!
      ... Hoping to shed a little light on the file version checking in Windows ... querying the Windows Installer service (which amounts to a metabase or ... Summer's Hottest Certification Just Got HOTTER! ... you can save 33% off of the TICSA certification exam! ...
      (NT-Bugtraq)
    • Re: Microsoft Numbering System
      ... Do me a favor and load up a new Windows XP box, ... on each and every patch. ... Summer's Hottest Certification Just Got HOTTER! ... To learn more about the TICSA certification, and to register as a TICSA ...
      (NT-Bugtraq)
    • Re: clients contacting WU directly
      ... set Cryptographic Services to Automatic for Startup ... Install Windows XP SP1 again. ... Summer's Hottest Certification Just Got HOTTER! ... you can save 33% off of the TICSA certification exam! ...
      (NT-Bugtraq)
    • Re: clients contacting WU directly
      ... When I deployed the Windows Automatic Update feature across our domain (to ... force clients to accept updates from our local SUS machine) I also ... Summer's Hottest Certification Just Got HOTTER! ... you can save 33% off of the TICSA certification exam! ...
      (NT-Bugtraq)
    • RPC DCOM still vulnerable even after applying patches
      ... windows 200 SP4 machines that "even if you apply the ... Summer's Hottest Certification Just Got HOTTER! ... you can save 33% off of the TICSA certification exam! ...
      (NT-Bugtraq)