[108742] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Kaminsky redux - libspf2 dns parsing bug

daemon@ATHENA.MIT.EDU (Florian Weimer)
Thu Oct 23 15:04:12 2008

From: Florian Weimer <fw@deneb.enyo.de>
To: "Suresh Ramasubramanian" <ops.lists@gmail.com>
Date: Thu, 23 Oct 2008 21:03:48 +0200
In-Reply-To: <bb0e440a0810211825s2c49ed7cgcc0e9bbf0a2d5a86@mail.gmail.com>
	(Suresh Ramasubramanian's message of "Wed, 22 Oct 2008 06:55:10
	+0530")
Cc: NANOG list <nanog@nanog.org>
Errors-To: nanog-bounces@nanog.org

* Suresh Ramasubramanian:

> For the "mailops is not operational" folks.. it involves parsing dns
> txt records, so .. well, please grit your teeth and read on, this gets
> interesting

By the way, BIND 9 is supposed to throw away this type of malformed
RDATA, so if you run BIND 9, this is only relevant if you can somehow
spoof messages to the stub resolver.


home help back first fref pref prev next nref lref last post