TCP DNS requests
From: Carl R Diliberto (cdiliberto@hotmail.com)Date: 10/30/02
- Previous message: Robert Sieber: "RE: Allowing secure external access."
- Next in thread: Martin Wasson: "Re: TCP DNS requests"
- Reply: Martin Wasson: "Re: TCP DNS requests"
- Reply: Douglas K. Fischer: "Re: TCP DNS requests"
- Reply: Louis Erickson: "RE: TCP DNS requests"
- Reply: Raghu Chinthoju: "RE: TCP DNS requests"
- Reply: Daniel Miessler: "RE: TCP DNS requests"
- Reply: Larry R.: "RE: TCP DNS requests"
- Reply: Meidling, Keith, CTR, OSD-C3I: "RE: TCP DNS requests"
- Reply: Mike Powell: "RE: TCP DNS requests"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: "Carl R Diliberto" <cdiliberto@hotmail.com> To: "security-basics" <security-basics@securityfocus.com> Date: Wed, 30 Oct 2002 08:46:23 -0500
We are reporting TCP based DNS requests to one of our DNS servers coming
from internal, client IP addresses. My manager would like to block the TCP
packets. What or why would their be random TCP packets? We monitored
several clients and it appears it only needs UDP.
Thanks
Carl
- Previous message: Robert Sieber: "RE: Allowing secure external access."
- Next in thread: Martin Wasson: "Re: TCP DNS requests"
- Reply: Martin Wasson: "Re: TCP DNS requests"
- Reply: Douglas K. Fischer: "Re: TCP DNS requests"
- Reply: Louis Erickson: "RE: TCP DNS requests"
- Reply: Raghu Chinthoju: "RE: TCP DNS requests"
- Reply: Daniel Miessler: "RE: TCP DNS requests"
- Reply: Larry R.: "RE: TCP DNS requests"
- Reply: Meidling, Keith, CTR, OSD-C3I: "RE: TCP DNS requests"
- Reply: Mike Powell: "RE: TCP DNS requests"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|