[35361] in bugtraq
Re: Symantec Enterprise Firewall DNSD cache poisoning Vulnerability
daemon@ATHENA.MIT.EDU (Peter Jelver)
Fri Jun 18 23:23:16 2004
Date: 18 Jun 2004 17:16:03 -0000
Message-ID: <20040618171603.8584.qmail@www.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: Peter Jelver <pj@esec.dk>
To: bugtraq@securityfocus.com
In-Reply-To: <1087321536.7690.85.camel@bender.telecom.com.ar>
This has yet to be investigated and commented by the vendor, but the SEF firewall dnsd has the option to configure "forwarders" - dnsd will defer all requests to these. A mitigating strategy until the vendor has an answer could be to configure forwarders pointing at ISP nameservers.
Peter Jelver
http://www.esec.dk