Re: djbdns/dnscache poisoning weakness
[email protected] (Paul Jarc)
| Newsgroups | gmane.network.djbdns |
|---|---|
| Organization | What did you have in mind? A short, blunt, human pyramid? |
| Message-ID | <[email protected]> |
Matthew Dempsky <[email protected]> wrote: > Once you've poisoned dnscache, you can send it a batch of 200 > unimportant queries so that it recycles all existing query slots and > will then disregard any legitimate responses. Ah, right. So that works if the attacker can detect a successful forgery, and send the last batch of 200 queries, all before any geniuine responses come in. If they can't do that, or don't care to bother, they have to use one query name to poison a different a different name. Right? paul