[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
More Re: [cobalt-developers] Fwd: CERT Advisory CA-2002-15 Denial-of-Service Vulnerabilityin ISC BIND 9
- Subject: More Re: [cobalt-developers] Fwd: CERT Advisory CA-2002-15 Denial-of-Service Vulnerabilityin ISC BIND 9
- From: Jeff Lasman <jblists@xxxxxxxxxxxxx>
- Date: Tue Jun 4 17:06:01 2002
- Organization: nobaloney.net
- List-id: Discussion Forum for developers on Sun Cobalt Networks products <cobalt-developers.list.cobalt.com>
jale@xxxxxxxxxx wrote:
> Do the RAQ servers run this version of BIND? How can one tell what version
> of BIND is running?
You do have a secondary DNS server, right? A REAL one; not just another
pointer to your one and only box. It IS on a separate network, right?
I just did a grep of strings swatch.
It looks like the Sun Cobalt doesn't automatically restart a stopped
bind.
So you can always write one. If you've got a second DNS server (or
more) and automatically restart bind within 15 minutes, then you're
probably reasonably safe until a fix comes out, even if you are running
bind 9.x.
Jeff
--
Jeff Lasman <jblists@xxxxxxxxxxxxx>
Linux and Cobalt/Sun/RaQ Consulting
nobaloney.net
P. O. Box 52672, Riverside, CA 92517
voice: (909) 778-9980 * fax: (702) 548-9484