localhoast A record?

Chris Thompson cet1 at cam.ac.uk
Mon Mar 24 11:54:21 UTC 2014


On Mar 21 2014, SM wrote:

>Hi Chris,
>At 11:18 21-03-2014, Chris Thompson wrote:
>>We used to create lots of localhost.[subdomain].cam.ac.uk records, even
>>to the extent of adding an AAAA record just for those institutions that
>>had IPv6 enabled on their networks. But we have pretty much given up doing
>>that for new subdomains. It still seems to me potentially useful to keep
>>localhost.cam.ac.uk itself, to terminate the probable iteration described
>>above before it goes any further.
>
>It can be used to exploit web application vulnerabilities.

Would you like to expand on that?

-- 
Chris Thompson
Email: cet1 at cam.ac.uk


More information about the bind-users mailing list