[dns-operations] Opened Pandora's box of Cache Poisoning

Stephane Bortzmeyer bortzmeyer at nic.fr
Thu May 1 19:48:43 UTC 2014


On Fri, May 02, 2014 at 02:52:16AM +0900,
 T.Suzuki <tss at reflection.co.jp> wrote 
 a message of 26 lines which said:

> And they already issued the waring. (in Japanese)
> http://jprs.jp/tech/security/2014-04-15-portrandomization.html

That's unrelated: the JPRS text was about the fact that, six years
after Kaminsky, there are still some resolvers which do *not* have
source port randomization (we see the same thing on .FR name
servers). That's bad but it's hardly a new and big discovery.

The JPRS warning does not mention the discoveries you claim.



More information about the dns-operations mailing list