Great Circle Associates Firewalls
(August 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: DNS attack symptoms?
From: Guy Jones <guyj @ outsource . com . au>
Date: Tue, 13 Aug 1996 09:59:19 +-1000
To: "'firewalls @ GreatCircle . COM'" <firewalls @ GreatCircle . COM>

My client had scrambled entries in their DNS tables (eg. the /var/named/db.XXX files looked like binaries when viewed thru vi).  Is this a symptom of a DNS attack?  It certainly works as denial of service method.
They are running Solaris 2.5 on a Netra (3.0), with firewall-1 2.0b. They had not applied the latest Solaris security patches.
They were/are being pestered by a local nuisance, I just want to know whether the two issues are related (as I suspect).

Guy Jones

Indexed By Date Previous: USENIX Symposium Firewalls BOF Notes
From: "Steve Lodin" <swlodin @ eng . delcoelect . com>
Next: Re: To Subnet or not?
From: Paul Ferguson <pferguso @ cisco . com>
Indexed By Thread Previous: Re: USENIX Symposium Firewalls BOF Notes
From: mckenney @ smiley . mitre . org (Brian W. McKenney)
Next: RE: DNS attack symptoms?
From: Guy Jones <guyj @ outsource . com . au>

Google
 
Search Internet Search www.greatcircle.com