Re: debian.org DNSs allow unrestricted zone transfers

2007-05-16 Thread Henrique de Moraes Holschuh
On Tue, 15 May 2007, Abel Martín wrote: I thought zone transfers should only be possible between DNSs which have records for the same domain, so why are debian.org DNSs (raff, Only if you have a reason to hide who is in your domain. possibility of suffering DoS attacks (it serves 254

debian.org DNSs allow unrestricted zone transfers

2007-05-15 Thread Abel Martín
Hi, I thought zone transfers should only be possible between DNSs which have records for the same domain, so why are debian.org DNSs (raff, rietz, klecker) allowing zone transfers? Maybe I'm paranoid, but I think there are security issues related to this, including the possibility of suffering

Re: debian.org DNSs allow unrestricted zone transfers

2007-05-15 Thread martin f krafft
also sprach Abel Martín [EMAIL PROTECTED] [2007.05.15.1356 +0200]: I thought zone transfers should only be possible between DNSs which have records for the same domain, so why are debian.org DNSs (raff, rietz, klecker) allowing zone transfers? Maybe I'm paranoid, but I think there are security

Re: debian.org DNSs allow unrestricted zone transfers

2007-05-15 Thread martin f krafft
also sprach Giacomo A. Catenazzi [EMAIL PROTECTED] [2007.05.15.1646 +0200]: the theory: zone transfer of a DNS gives internal information about structure and IPs of internal machines. my theory: that information should be public, or at least if it were, the network should not be unsafer

Re: debian.org DNSs allow unrestricted zone transfers

2007-05-15 Thread Giacomo A. Catenazzi
martin f krafft wrote: also sprach Abel Martín [EMAIL PROTECTED] [2007.05.15.1356 +0200]: I thought zone transfers should only be possible between DNSs which have records for the same domain, so why are debian.org DNSs (raff, rietz, klecker) allowing zone transfers? Maybe I'm paranoid, but I

Re: debian.org DNSs allow unrestricted zone transfers

2007-05-15 Thread Giacomo A. Catenazzi
martin f krafft wrote: also sprach Giacomo A. Catenazzi [EMAIL PROTECTED] [2007.05.15.1646 +0200]: the theory: zone transfer of a DNS gives internal information about structure and IPs of internal machines. my theory: that information should be public, or at least if it were, the network