Bind version number

Cricket Liu cricket at acmebw.com
Tue Feb 15 23:29:23 UTC 2000


> We recently got hacked. They knew they could get us because they used
> dig to find version numbers of bind over a wide range of IP addresses.
> Is there anyway to get DNS to report its version number as <UNKNOWN> or
> some bogus number?

First, upgrade to BIND 8.2.2-P5 (that way, you won't have the
vulnerabilities
that enabled the hacker to break in) and then use:

options {
    version "Whatever";
};

cricket

Acme Byte & Wire
cricket at acmebw.com
www.acmebw.com

Attend the next Internet Software Consortium/Acme Byte & Wire
DNS and BIND class!  See www.acmebw.com/training.htm for
the schedule and to register for upcoming classes.




More information about the bind-users mailing list