Re: djbdns/dnscache poisoning weakness
Michael Sierchio <[email protected]>
| Newsgroups | gmane.network.djbdns |
|---|---|
| Message-ID | <[email protected]> |
Paul Jarc wrote: > ... An attacker can send an SOA > query ... Really? I think it's important to be explicit about what the threat model is. Attackers don't make queries to your dnscache, presumably. They can induce you to make such a query, and hope to forge a response, but with no more chance of success for any other poisoning attack against dnscache.