RE: DNS ACL ?

From: Maher Odeh (rax_at_netvision.net.il)
Date: 11/13/05

  • Next message: Jason Muskat: "RE: DNS ACL ?"
    Date: Sun, 13 Nov 2005 10:31:55 +0200
    To: "John Hally" <JHally@epnet.com>, <pen-test@securityfocus.com>
    
    

    Hi John,
    Correct, 53/UDP is used for DNS Queries and 53/TCP is used for Zone
    transfers yet it's not always like this
    MS uses 53/TCP for queries as well, but mainly the UDP is used for
    queries

    Thanks
     

    -----Original Message-----
    From: John Hally [mailto:JHally@epnet.com]
    Sent: Friday, November 11, 2005 3:35 PM
    To: 'pen-test@securityfocus.com'
    Subject: DNS ACL ?

    Hello All,

     

    I need a sanity check regarding DNS ACLs. For external facing DNS
    servers you need to allow only udp/53 inbound, correct? I know tcp/53
    is used for zone transfers and requests/replies greater than a certain
    size, but they shouldn't typically happen for general dns queries
    correct?

     

    Thanks in advance!

    ------------------------------------------------------------------------
    ------
    Audit your website security with Acunetix Web Vulnerability Scanner:

    Hackers are concentrating their efforts on attacking applications on
    your website. Up to 75% of cyber attacks are launched on shopping carts,
    forms, login pages, dynamic content etc. Firewalls, SSL and locked-down
    servers are futile against web application hacking. Check your website
    for vulnerabilities to SQL injection, Cross site scripting and other web
    attacks before hackers do!
    Download Trial at:

    http://www.securityfocus.com/sponsor/pen-test_050831
    ------------------------------------------------------------------------
    -------

     

     

    ------------------------------------------------------------------------------
    Audit your website security with Acunetix Web Vulnerability Scanner:

    Hackers are concentrating their efforts on attacking applications on your
    website. Up to 75% of cyber attacks are launched on shopping carts, forms,
    login pages, dynamic content etc. Firewalls, SSL and locked-down servers are
    futile against web application hacking. Check your website for vulnerabilities
    to SQL injection, Cross site scripting and other web attacks before hackers do!
    Download Trial at:

    http://www.securityfocus.com/sponsor/pen-test_050831
    -------------------------------------------------------------------------------


  • Next message: Jason Muskat: "RE: DNS ACL ?"

    Relevant Pages

    • FW: DNS ACL ?
      ... Subject: DNS ACL? ... queries are sent to the DNS server IP address, ... > Audit your website security with Acunetix Web Vulnerability Scanner: ... Up to 75% of cyber attacks are launched on shopping ...
      (Pen-Test)
    • RE: DNS ACL ?
      ... forget to allow the DNS servers outbound reply. ... Subject: DNS ACL? ... Audit your website security with Acunetix Web Vulnerability Scanner: ... Up to 75% of cyber attacks are launched on shopping carts, forms, ...
      (Pen-Test)
    • Re: DNS ACL ?
      ... Exchange use TCP 53 for DNS queries as well, ... For external facing DNS servers ... > Audit your website security with Acunetix Web Vulnerability Scanner: ... Up to 75% of cyber attacks are launched on shopping carts, forms, ...
      (Pen-Test)
    • DNS ACL ?
      ... I need a sanity check regarding DNS ACLs. ... For external facing DNS servers ... Audit your website security with Acunetix Web Vulnerability Scanner: ... Cross site scripting and other web attacks before hackers do! ...
      (Pen-Test)
    • Re: Exchange, SBS and Reverse DNS - Best Practices??
      ... I'm an IT professional who's come to appreciate SBS 2003 in my own workplace, so I recommended it for a family member's business. ... Their email server's DNS records would pass normal reverse lookup checking, but a reverse lookup of their second-level domain name would resolve to another IP address; in fact, the IP address of their website. ...
      (microsoft.public.windows.server.sbs)