<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Sonic.net Internals &#187; dns</title>
	<atom:link href="http://corp.sonic.net/internals/tag/dns/feed/" rel="self" type="application/rss+xml" />
	<link>http://corp.sonic.net/internals</link>
	<description>The technical internal workings of Sonic.net; a blog for System and Network Admins.</description>
	<lastBuildDate>Fri, 14 Nov 2008 22:14:14 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>The recent DNS vulnerability and the impact on Sonic.net.</title>
		<link>http://corp.sonic.net/internals/2008/07/11/the-recent-dns-vulnerability-and-the-impact-on-sonicnet/</link>
		<comments>http://corp.sonic.net/internals/2008/07/11/the-recent-dns-vulnerability-and-the-impact-on-sonicnet/#comments</comments>
		<pubDate>Sat, 12 Jul 2008 00:35:12 +0000</pubDate>
		<dc:creator>Augie Schwer</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[bind]]></category>
		<category><![CDATA[cache]]></category>
		<category><![CDATA[cert]]></category>
		<category><![CDATA[dns]]></category>
		<category><![CDATA[powerdns]]></category>

		<guid isPermaLink="false">http://corp.sonic.net/internals/?p=9</guid>
		<description><![CDATA[Earlier this week US-CERT announced a very serious DNS Cache Poisoning vulnerability which affects a large number of DNS servers across the Internet.
Thankfully we here at Sonic.net run PowerDNS on our Authoritative and Recursive servers which has been hardened against this type of attack for years (official PowerDNS statement on the vulnerability).
The vulnerability would allow [...]]]></description>
			<content:encoded><![CDATA[<p>Earlier this week <a href="http://www.us-cert.gov/">US-CERT</a> announced a very serious <a href="http://www.kb.cert.org/vuls/id/800113">DNS Cache Poisoning vulnerability</a> which affects a large number of DNS servers across the Internet.</p>
<p>Thankfully we here at <a title="The Best ISP on the Planet." href="http://sonic.net">Sonic.net</a> run <a title="A modern, advanced and high performance nameserver." href="http://powerdns.com">PowerDNS</a> on our Authoritative and Recursive servers which has been hardened against this type of attack for years (<a href="http://mailman.powerdns.com/pipermail/pdns-users/2008-July/005536.html">official PowerDNS statement on the vulnerability</a>).</p>
<p>The vulnerability would allow an attacker to inject incorrect answers into the recursive server, which would then send clients to a potentially malicious web site or redirect email, or any other network traffic; all of which would be un-detected by the user or the host running the name server.</p>
<p>It is highly recommended that you update your DNS name server software; all major vendors will have patches and updates available; of course if you were running PowerDNS, then you wouldn&#8217;t need to do any patching. <img src='http://corp.sonic.net/internals/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
			<wfw:commentRss>http://corp.sonic.net/internals/2008/07/11/the-recent-dns-vulnerability-and-the-impact-on-sonicnet/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
