Edward Jaffe wrote:
John Giltner wrote:
Edward Jaffe wrote:
http://www.pcworld.com/businesscenter/article/149022/faq_how_to_dodge_the_dns_bug.html http://www.computerworld.com/action/article.do?command=viewArticleBasic&articleId=9110622
http://www.doxpara.com/

Is z/OS vulnerable? If not, why not? If so, what is the fixing APAR?


It might be, but the way I am reading the information about the vulnerability you have to have your DNS server setup for recursion. Do you have your z/OS based DNS server(s) setup for recursion?

Recursion is the norm for DNS. I've never seen a DNS set up any other way.



It's been my experience that most DNS servers for private companies are setup to forward to DNS servers that thier ISP provides. That way they rely on their ISP's DNS server's cache and do one query instead of going from the root dns servers, to the next level, to the next level, and so on.

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO
Search the archives at http://bama.ua.edu/archives/ibm-main.html

Reply via email to