"stealth master" DNS Security

Alan Clegg Alan_Clegg at isc.org
Wed Mar 25 13:53:28 UTC 2009


Ram Akuka wrote:

> Is there's any way I can encrypt the zone transfer date (without using
> any third-party encryption tool)?

Why exactly do you want to do this?

DNS data is NOT PROTECTED DATA.

As long as queries and responses are permitted in the clear (which is
the way DNS works), you are only fooling yourself by doing all of this
"encryption".

AlanC

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 197 bytes
Desc: OpenPGP digital signature
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20090325/e74aa9c2/attachment.bin>


More information about the bind-users mailing list