DNS ACL ?

From: John Hally (JHally_at_epnet.com)
Date: 11/11/05

  • Next message: Barrie Dempster: "Re: Vuln Scanning software choices"
    To: "'pen-test@securityfocus.com'" <pen-test@securityfocus.com>
    Date: Fri, 11 Nov 2005 08:35:06 -0500
    
    

    Hello All,

     

    I need a sanity check regarding DNS ACLs. For external facing DNS servers
    you need to allow only udp/53 inbound, correct? I know tcp/53 is used for
    zone transfers and requests/replies greater than a certain size, but they
    shouldn't typically happen for general dns queries correct?

     

    Thanks in advance!

    ------------------------------------------------------------------------------
    Audit your website security with Acunetix Web Vulnerability Scanner:

    Hackers are concentrating their efforts on attacking applications on your
    website. Up to 75% of cyber attacks are launched on shopping carts, forms,
    login pages, dynamic content etc. Firewalls, SSL and locked-down servers are
    futile against web application hacking. Check your website for vulnerabilities
    to SQL injection, Cross site scripting and other web attacks before hackers do!
    Download Trial at:

    http://www.securityfocus.com/sponsor/pen-test_050831
    -------------------------------------------------------------------------------


  • Next message: Barrie Dempster: "Re: Vuln Scanning software choices"

    Relevant Pages

    • FW: DNS ACL ?
      ... Subject: DNS ACL? ... queries are sent to the DNS server IP address, ... > Audit your website security with Acunetix Web Vulnerability Scanner: ... Up to 75% of cyber attacks are launched on shopping ...
      (Pen-Test)
    • RE: DNS ACL ?
      ... forget to allow the DNS servers outbound reply. ... Subject: DNS ACL? ... Audit your website security with Acunetix Web Vulnerability Scanner: ... Up to 75% of cyber attacks are launched on shopping carts, forms, ...
      (Pen-Test)
    • RE: DNS ACL ?
      ... 53/UDP is used for DNS Queries and 53/TCP is used for Zone ... Audit your website security with Acunetix Web Vulnerability Scanner: ... Up to 75% of cyber attacks are launched on shopping carts, ...
      (Pen-Test)
    • Re: DNS ACL ?
      ... Exchange use TCP 53 for DNS queries as well, ... For external facing DNS servers ... > Audit your website security with Acunetix Web Vulnerability Scanner: ... Up to 75% of cyber attacks are launched on shopping carts, forms, ...
      (Pen-Test)
    • Re: DNS ACL ?
      ... } I need a sanity check regarding DNS ACLs. ... For external facing DNS servers ... Audit your website security with Acunetix Web Vulnerability Scanner: ... Cross site scripting and other web attacks before hackers do! ...
      (Pen-Test)