Re: Dns tunnel detection/prevention

2025-05-23 Thread Michael De Roover
On Saturday, May 24, 2025 3:53:57 AM CEST Fred Morris wrote: > On Fri, 23 May 2025, Grant Taylor via bind-users wrote: > > I don't think there is anything that I would describe that way. But there > > may be some rate limiting option(s) that you could use to at least cripple > > using DNS queries

Re: Dns tunnel detection/prevention

2025-05-23 Thread Grant Taylor via bind-users
On 5/23/25 8:53 PM, Fred Morris wrote: If you fail in an outright, reproducible, measurable fashion you give your opponent predictability and confidence. As a defender you want to undermine that and look like an under-resourced, poorly administered network that somehow, we don't know exactly ho

Re: Dns tunnel detection/prevention

2025-05-23 Thread Fred Morris
On Fri, 23 May 2025, Grant Taylor via bind-users wrote: On 5/22/25 9:23 AM, Karol Nowicki via bind-users wrote: Does ISC Bind software by native has any dns tunneling prevention embedded ? I don't think there is anything that I would describe that way. But there may be some rate limiting

Re: Dns tunnel detection/prevention

2025-05-23 Thread Grant Taylor via bind-users
On 5/22/25 9:23 AM, Karol Nowicki via bind-users wrote: Does ISC Bind software by native has any dns tunneling prevention embedded ? I don't think there is anything that I would describe that way. But there may be some rate limiting option(s) that you could use to at least cripple using DNS

Re: Dns tunnel detection/prevention

2025-05-22 Thread Michael De Roover
On Thursday, May 22, 2025 4:23:05 PM CEST Karol Nowicki via bind-users wrote: > Does ISC Bind software by native has any dns tunneling prevention embedded? > Thanks BIND on its own does not do this. Assuming that you are running it on a LAN as a resolver meanwhile, you can make it the only thing

Re: Dns tunnel detection/prevention

2025-05-22 Thread Michael De Roover
On Thursday, May 22, 2025 4:23:05 PM CEST Karol Nowicki via bind-users wrote: > Does ISC Bind software by native has any dns tunneling prevention embedded? > Thanks BIND on its own does not do this. Assuming that you are running it on a LAN as a resolver meanwhile, you can make it the only thing

Re: Dns tunnel detection/prevention

2025-05-22 Thread Mark Andrews
No. This is not a thing regular DNS servers do.-- Mark AndrewsOn 23 May 2025, at 00:23, Karol Nowicki via bind-users wrote: Does ISC Bind software by native has any dns tunneling prevention embedded ? Thanks Wysłane z Yahoo Mail do iPhone -- Visit https://lists.isc.org/mailman/listinfo/bind-users

Re: Dns tunnel detection/prevention

2025-05-22 Thread Marco Moock
Am 22.05.2025 um 14:23:05 Uhr schrieb Karol Nowicki via bind-users: > Does ISC Bind software by native has any dns tunneling prevention > embedded ? Please give more info what you want to accomplish. > Wysłane z Yahoo Mail do iPhone Please configure your mail software not to include such lines.

Dns tunnel detection/prevention

2025-05-22 Thread Karol Nowicki via bind-users
Does ISC Bind software by native has any dns tunneling prevention embedded ?  Thanks  Wysłane z Yahoo Mail do iPhone -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us