ity
Winner 2008 Network Products Guide Hot Companies
FreeBSD SpamAssassin Ports maintainer
> From: Mark Andrews <[EMAIL PROTECTED]>
> Date: Mon, 14 Jul 2008 10:29:36 +1000
> To:
> Cc: FreeBSD Security Advisories <[EMAIL PROTECTED]>
> Subject: Re: FreeBSD Security
> NOTE WELL: If a port number is specified via the query-source or
> query-source-v6 options to BIND, randomized port selection will not be
> used. Consequently it is strongly recommended that these options not
> be used to specify fixed port numbers
> --
> Michael Scheidell, CTO
> >|SECNAP Netw
There was no mention of checking named.conf to ensure that
a port was not specified in the query-source clauses. Just
upgrading will not fix the problem it if named.conf has
"query-source port 53".
Mark
--
Mark Andrews, ISC
1 Seymour St., Dundas
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
=
FreeBSD-SA-08:06.bind Security Advisory
The FreeBSD Project
Topic: D