[106539] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Cache Poisoning Detection via ONZRA's CacheAudit

daemon@ATHENA.MIT.EDU (Jose Avila)
Mon Aug 4 16:20:19 2008

From: Jose Avila <jose@onzra.com>
To: nanog@nanog.org
Date: Fri, 1 Aug 2008 13:20:45 -0700
Errors-To: nanog-bounces@nanog.org

In light of new attack vectors DNS Cache Poisoning discovered by Dan  
Kaminsky, ONZRA has developed a free Open Source (BSD License) tool  
called CacheAudit. This tool allows recursive providers to detect  
cache poisoning events using cache dumps from their DNS servers. Along  
with releasing this tool, ONZRA has also released a white paper  
describing the validation process.

Main Tool Page: http://www.onzra.com/cacheaudit.html
White Paper: http://www.onzra.com/RecursiveDNSCacheAuditingWhitepaper.pdf


Jose

--
Jose Avila III
ONZRA
www.onzra.com


home help back first fref pref prev next nref lref last post