North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: DNS: Definitely Not Safe?

  • From: Paul Vixie
  • Date: Wed Feb 14 13:07:22 2007

[email protected] (Stephane Bortzmeyer) writes:

> It may be on-topic but it is full of FUD, mistakes and blatant
> b...t. Certainly not the recommended reading for the sysadmin.

i think you're being way to kind here.

> The best stupid sentence is the one asking firewalls in front of the
> DNS servers... to prevent tunneling data over DNS!

just as the most common lie told by spammers is "dear friend", so it is
that the biggest error in this piece is in the first sentence:

	When it comes to the Web's domain name system (DNS),

this guy was probably writing netware-vs-smb comparisons during the two
decades that the internet existed before the web came along.  the web is
an internet application, and the dns is part of the internet, not part of
the web.  the rest of the article is equally horrific in its maltreatment
and ignorance of facts.
Paul Vixie