Il y a deja un patch pour Bind...
http://marc.theaimsgroup.com/?l=bind9-users&m=106378710318706&w=2
C'est pas un ban de l'addresse IP de verisign, c'est ne pas permettre des
reponses A d'un root server..
Dominique
|---------+--------------------------------->
| | "Dominique Gallot" |
| | <[EMAIL PROTECTED]|
| | ercard.com> |
| | Sent by: |
| | [EMAIL PROTECTED]|
| | ixtech.be |
| | |
| | |
| | 18/09/2003 13:16 |
| | Please respond to |
| | linux |
| | |
|---------+--------------------------------->
>---------------------------------------------------------------------------------------------------------------------|
|
|
| To: [EMAIL PROTECTED]
|
| cc: (bcc: Dominique Gallot/BRU/MASTERCARD)
|
| Subject: [linux] HS: VeriSign s'approprie les noms de domaines in�xistants
|
>---------------------------------------------------------------------------------------------------------------------|
Le savez vous, mais depuis quelques jours toutes les requetes dns
inexistantes arrivent vers un server de Verisign ??
[EMAIL PROTECTED] dga]$ host sdsqfd.com
sdsqfd.com has address 64.94.110.11
[EMAIL PROTECTED] dga]$ host sdsqfsqdfsqdfqsdfd.com
sdsqfsqdfsqdfqsdfd.com has address 64.94.110.11
[EMAIL PROTECTED] dga]$ host sdsqfsqdfssdfqsdfzaefzefPOP.com
sdsqfsqdfssdfqsdfzaefzefPOP.com has address 64.94.110.11
[EMAIL PROTECTED] dga]$ host dg-cronsuting.com
dg-cronsuting.com has address 64.94.110.11
[EMAIL PROTECTED] dga]$ host www.linx-be.com
www.linx-be.com has address 64.94.110.11
Voire la news sur
http://www.infos-du-net.com/modules/news/article-1219.html et transfert..net
Imaginez. Verisign met un server POP, IMAP, SSH. Votre server DNS est down
--> ca arrive sur le 64.94.110.11.
Ils ont automatiquement votre mot de pass pop/imap... Ou si vous faites pas
gaffes sur le "host finger print ssh" votre password ssh.....
Il ne vont surement pas le faire, mais savoir qu'ils peuvent le faire, ca
me fait peur... A quand un patch ds ssh/putty qui ne connect pas si ip =
sitefinder.verisign.com
Idem pour les clients mail...
Dominique
-----------------------------------------
CONFIDENTIALITY NOTICE
This E-mail message and any documents which accompany it are intended only
for the use of the individual or entity to which addressed, and may contain
information that is privileged, confidential or exempt from disclosure
under applicable law. If the reader is not the intended recipient, any
disclosure, distribution or other use of this E-mail message is prohibited.
If you have received this E-mail message in error, please delete and notify
the sender immediately. Thank you.
_______________________________________________________
Linux Mailing List - http://www.unixtech.be
Subscribe/Unsubscribe: http://www.unixtech.be/mailman/listinfo/linux
Archives: http://www.mail-archive.com/[EMAIL PROTECTED]
IRC: efnet.unixtech.be:6667 - #unixtech
-----------------------------------------
CONFIDENTIALITY NOTICE
This E-mail message and any documents which accompany it are intended only for the use
of the individual or entity to which addressed, and may contain information that is
privileged, confidential or exempt from disclosure under applicable law. If the
reader is not the intended recipient, any disclosure, distribution or other use of
this E-mail message is prohibited. If you have received this E-mail message in error,
please delete and notify the sender immediately. Thank you.
_______________________________________________________
Linux Mailing List - http://www.unixtech.be
Subscribe/Unsubscribe: http://www.unixtech.be/mailman/listinfo/linux
Archives: http://www.mail-archive.com/[EMAIL PROTECTED]
IRC: efnet.unixtech.be:6667 - #unixtech