Re: DNS recommendations

From: Stu (stu_at_santa-li.com)
Date: 12/13/04


Date: Mon, 13 Dec 2004 02:37:53 -0500

You could try using djbdns ( http://cr.yp.to/djbdns.html ). It was written
by D. J. Bernstein, who wrote qmail among other things, but he's really
into security. I think he's offering $500.00 US to the first person who
can find a security hole in it, the software's been around for almost 5
years and nobody's collected the reward yet...

Stu

/dev/null wrote:

> we're looking to have a cache & forward DNS server that will host all of
> our internal DNS and forward/cache any requests beyond what it serves up.
>
> Bind looks like it will do all we need, but we've heard a number of
> security concerns with bind.
>
> Any recommendations on something that can handle a large scale (1,000+
> zone files) deployment that is also fairly secure?
>
> Thanks!



Relevant Pages

  • Re: how can I test the security of my Linux box ?
    ... Very few ppl are interested in going to jail for helping someone ... Just as BIND - use djbDNS instead of BIND. ... > SATAN is also another program to try on to test your security. ... Satan is quite old - Nessus will be much better nowadays. ...
    (comp.os.linux.security)
  • Re: Waiting for BIND security announcement
    ... include the fixes that the security officer deems important enough to ... I can't speak for the security team, but I'm pretty sure that this ... There is even an option in the port to overwrite the base BIND ... name server to the big bad world while tracking RELENG_N_M ("release ...
    (freebsd-questions)
  • Re: ADAM - New users reading data - best practices
    ... You bind to the directory (or the connection to the ... AUTHENTICATED USERS built-in security principal for your ACL entries. ...
    (microsoft.public.windows.server.active_directory)
  • TCP/IP for HP OpenVMS Bind Version 8 Potential Denial
    ... SSRT3653 - TCP/IP for HP OpenVMS Bind Version 8 Potential Denial ... Software Security Response Team ...
    (comp.os.vms)
  • SSRT3653 Bind 8.1.2
    ... Source: HEWLETT-PACKARD COMPANY ... SECURITY BULLETIN: HPSBUX0311-303 ... Bulletin provided that it remains complete and intact. ... Potential security vulnerability in Bind 8.1.2. ...
    (comp.sys.hp.hpux)

Loading