"Hiding" version.bind in /etc/bind/named.conf.options doesn't work

sthaug at nethelp.no sthaug at nethelp.no
Wed Feb 28 20:23:06 UTC 2018


> >> Good morning, I'm trying to make it more difficult for an attacker to
> >> get my DNS server version.
> > 
> > Waste of time.  The attacks are automated, and will be mounted anyway.
> > 
> 
> Indeed. At least one of my legacy servers returns "4.9.4-P1-Would you 
> believe Win98SE?", which was an in-joke at the time but I like it well 
> enough that it is still here 10+ years later.

Irrelevant aside: I have an Apache server which returns

    Server: Apache/2.4 (Sintran III)

Don't know Sintran III? https://en.wikipedia.org/wiki/Sintran_III :-)

Steinar Haug, Nethelp consulting, sthaug at nethelp.no


More information about the bind-users mailing list