North American Network Operators Group Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical Re: TLD servers with recursion was Re: Exploit for DNS Cache Poisoning- RELEASED
Gadi Evron wrote: On Thu, 24 Jul 2008, Martin Hannigan wrote: I'm confused by the last sentence. I don't understand if you are asking a question, or stating that recursion should be disabled. If it is a statement, then you must mean that ops should disable recursion, and enable forwarding for name resolution, correct? In this case, its been proven that having an upstream forward that is 'broken' will have the exact same effect as having a broken recursive server. My apologies if I've misunderstood your comment. Steve
|