How to prevent querying of bind version

James Raftery james-bind-users at now.ie
Wed Oct 3 13:03:42 UTC 2001


On Wed, Oct 03, 2001 at 08:39:15PM +0800, derek.b.gooh at sg.andersen.com wrote:
> I'm running bind 8.22-p5, how do I configure bind to prevent people from
> querying my bind version?

You first upgrade to 8.2.5-REL *immediately*, as 8.2.2-P5 has serious,
published security vulnerabilities. See
http://www.isc.org/products/BIND/bind-security.html

Then use the options statement in your named.conf to have BIND publish
any string of your choosing:

options {
	[ ...]
	version "I should subscribe to the CERT mailing list";
};


Regards,
james
-- 
James Raftery (JBR54)
  "It's somewhere in the Red Hat district"  --  A network engineer's
   freudian slip when talking about Amsterdam's nightlife at RIPE 38.

_____________________________________________________________________
This message has been checked for all known viruses by the 
MessageLabs Virus Scanning Service. For further information visit
http://www.messagelabs.com/stats.asp



More information about the bind-users mailing list