In article <[email protected]>,
 Kevin Darcy <[email protected]> wrote:

> Re-use of source ports for DNS queries is a bad security practice. I 
> cast my vote in favor of penalizing it, in the default configuration of 
> any device that responds to DNS requests.

It's really not the job of a load balancer or server to force clients to 
use good security practices.

I suspect this is actually a bug, but the vendor is using the security 
value of it as an excuse to lower its priority.

-- 
Barry Margolin, [email protected]
Arlington, MA
*** PLEASE don't copy me on replies, I'll read them in the group ***
_______________________________________________
bind-users mailing list
[email protected]
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to