Re: FreeBSD Security Advisory FreeBSD-SA-08:06.bind

2008-07-13 Thread Michael Scheidell
ity Winner 2008 Network Products Guide Hot Companies FreeBSD SpamAssassin Ports maintainer > From: Mark Andrews <[EMAIL PROTECTED]> > Date: Mon, 14 Jul 2008 10:29:36 +1000 > To: > Cc: FreeBSD Security Advisories <[EMAIL PROTECTED]> > Subject: Re: FreeBSD Security

Re: FreeBSD Security Advisory FreeBSD-SA-08:06.bind

2008-07-13 Thread Mark Andrews
> NOTE WELL: If a port number is specified via the query-source or > query-source-v6 options to BIND, randomized port selection will not be > used. Consequently it is strongly recommended that these options not > be used to specify fixed port numbers > -- > Michael Scheidell, CTO > >|SECNAP Netw

Re: FreeBSD Security Advisory FreeBSD-SA-08:06.bind

2008-07-13 Thread Mark Andrews
There was no mention of checking named.conf to ensure that a port was not specified in the query-source clauses. Just upgrading will not fix the problem it if named.conf has "query-source port 53". Mark -- Mark Andrews, ISC 1 Seymour St., Dundas

FreeBSD Security Advisory FreeBSD-SA-08:06.bind

2008-07-13 Thread FreeBSD Security Advisories
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 = FreeBSD-SA-08:06.bind Security Advisory The FreeBSD Project Topic: D