Risks of patched servers behind de-randomizing NAT

Jarosław Rafa raj at ap.krakow.pl
Thu Jul 31 20:28:51 UTC 2008


David Carmean pisze:
> I seem to have lost a message where somebody from ISC (Paul?) was going to
> release an updated/new advisory regarding the source-port de-randomizing
> effects of many NAT implementations will have upon patched servers.  

But why someone puts a DNS server behind a NAT? It's a bit nonsensical...
-- 
Regards,
    Jaroslaw Rafa
    raj at ap.krakow.pl
--
Zapraszam na moja nowa strone: http://www.ap.krakow.pl/~raj/


More information about the bind-users mailing list