Community Forums
Connect with us on LinkedIn
  
+ Reply to Thread
Results 1 to 5 of 5
  1. #1
    Member
    Join Date
    Sep 2006
    Posts
    15

    Default DNS Worry

    I get this message when I query my name using dnsreport

    ERROR: One or more of your nameservers reports that it is an open DNS server. This usually means that anyone in the world can query it for domains it is not authoritative for (it is possible that the DNS server advertises that it does recursive lookups when it does not, but that shouldn't happen). This can cause an excessive load on your DNS server. Also, it is strongly discouraged to have a DNS server be both authoritative for your domain and be recursive (even if it is not open), due to the potential for cache poisoning (with no recursion, there is no cache, and it is impossible to poison it). Also, the bad guys could use your DNS server as part of an attack, by forging their IP address. Problem record(s) are:
    Server xxx.xxx.xxx.xxx reports that it will do recursive lookups.


    the XXX is my IP Address, just removed it to be safe for the ticket.


    Is there a way I can secure my DNS better
    thank you

  2. #2
    Member rhenderson's Avatar
    Join Date
    Apr 2005
    Location
    Oklahoma
    Posts
    742

    Default

    Quote Originally Posted by zodiac
    I get this message when I query my name using dnsreport

    ERROR: One or more of your nameservers reports that it is an open DNS server. This usually means that anyone in the world can query it for domains it is not authoritative for (it is possible that the DNS server advertises that it does recursive lookups when it does not, but that shouldn't happen). This can cause an excessive load on your DNS server. Also, it is strongly discouraged to have a DNS server be both authoritative for your domain and be recursive (even if it is not open), due to the potential for cache poisoning (with no recursion, there is no cache, and it is impossible to poison it). Also, the bad guys could use your DNS server as part of an attack, by forging their IP address. Problem record(s) are:
    Server xxx.xxx.xxx.xxx reports that it will do recursive lookups.


    the XXX is my IP Address, just removed it to be safe for the ticket.


    Is there a way I can secure my DNS better
    thank you
    I assume you got that error via dnsreport.com and there is a link there that shows you how to edit named.conf to fix it. I would put it here but I do not remember it exactly but I do remember it has something to do with recursion.
    Regards,
    Randy
    Affordable Web Hosting
    _________________________

  3. #3
    Member
    Join Date
    Nov 2005
    Posts
    102

  4. #4
    Member
    Join Date
    Aug 2004
    Posts
    23

    Default

    if you do a search for "open dns" in this forum you'll find loads of threads about this...
    have a quick look at Fixing open DNS servers as well, it might help...
    always remember to backup your named.conf before any changes!

    sky

  5. #5
    Member Manuel_accu's Avatar
    Join Date
    Jun 2005
    Posts
    191

    Default

    It is related to open DNS server and that reponnds to recursive queries for anyone which may lead to DDos attack using open DNS server.

    Fixing Open BIND DNS server: (source: dnsreport.com)

    * Open named.conf with a text editor
    * Use a line "recursion no;" in the "options" clause (or in the "view" clause)
    * If you need to enable recursion for your local network, you can use a "allow-recursion { ADD_LIST_OF_YOUR_IP_RANGES_HERE; }" line in the "options" section.

    If you are not sure for above step, check the below mentioned URL for easy gude:

    http://forums.linuxwebadmin.info/ind...opic,49.0.html

    Thanks,
    Linux Web Administrator Guide
    Optimize, secure and performance tunning for Apache || MySQL5.1 Cluster How To
    The visionary conceives the impossible, The missionary makes it possible. ...Gita.

Similar Threads & Tags
Similar threads

  1. CentOS Scare - Don't Worry !
    By hostmedic in forum cPanel and WHM Discussions
    Replies: 7
    Last Post: 08-01-2009, 11:33 AM
  2. Should i worry about this mail.
    By leftie in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 10-20-2007, 04:57 PM
  3. To worry or not to worry?
    By zelf in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 12-29-2006, 09:33 AM
  4. should i worry about /scripts ?
    By mehrdad abed in forum New User Questions
    Replies: 4
    Last Post: 10-12-2006, 09:58 AM
  5. Should I worry about imap connections from an unknown IP?
    By Vatoloco in forum cPanel and WHM Discussions
    Replies: 5
    Last Post: 09-07-2005, 11:54 AM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube