Free test for DNS port vulnerability

Andy Shellam andy.shellam-lists at mailnetwork.co.uk
Fri Jul 18 23:18:08 UTC 2008


Hi Chris,

That's great thanks - looking good:

"77.75.105.84 is GOOD: 26 queries in 3.8 seconds from 26 ports with std 
dev 18075.66"
"77.75.105.85 is GOOD: 26 queries in 3.8 seconds from 26 ports with std 
dev 15641.40"

I downloaded the dnssec presentation from ISC today so I'm going to be 
looking at implementing that fairly soon.

Regards,

Andy

Chris Buxton wrote:
> Yes, the command line test can be targeted at a particular server:
>
> dig +short porttest.dns-oarc.net TXT @your.server
>
> Chris Buxton
> Professional Services
> Men & Mice
>
> On Jul 18, 2008, at 3:11 PM, Andy Shellam wrote:
>
>> Hi,
>>
>> Is there any such online test that will test a specific nameserver
>> rather than my ISP's servers?
>>
>> I would like to test my own nameservers (yes I have upgraded to
>> 9.5.0-p1, I'm just intrigued to see what the test reveals.)  However
>> both of these tests automatically target my ISPs servers, I'd like a
>> utility where I can say - test this server: xx.xx.xx.xx (IPv4) for 
>> example.
>>
>> Thanks,
>>
>> Andy
>>
>>
>> Stephane Bortzmeyer wrote:
>>> On Fri, Jul 18, 2008 at 03:30:35PM +0000,
>>> Jon Kibler <jon.r.kibler at gmail.com> wrote
>>> a message of 11 lines which said:
>>>
>>>
>>>> The original test, from the horse's mouth so to speak, is on Dan
>>>> Kaminsky's web site:
>>>>   http://www.doxpara.com/
>>>>
>>>
>>> The original OARC test (described in
>>> <https://www.dns-oarc.net/oarc/services/porttest>) was better because
>>> it can be run from the comand-line.
>>>
>>> The new OARC test, online, is even better
>>> <https://www.dns-oarc.net/oarc/services/dnsentropy>.
>>>
>>>
>>>
>>
>
>


More information about the bind-users mailing list