Upgrade from 9.14 to 9.16 - transfer-source with low source port no longer works.

Matus UHLAR - fantomas uhlar at fantomas.sk
Tue May 26 11:07:34 UTC 2020

On 26.05.20 11:38, Ingeborg Hellemo wrote:
>If I do a full 'rndc reload' I finally get an error:
>May 26 11:08:14 ludvigsen named[25953]: unable to create dispatch for reserved
>port permission denied
>Since this is a host with serveral virtual interfaces this address/port is set
>in named.conf:
>        transfer-source port 53;
>The solution was to remove the 'port 53' part of the config,

FYI, using static source port is discouraged for about 12 years, since it
maked DNS servers prone to DNS cache poisoning:

I guess source port 53 was meant long ago to avoid DNS from being
firewalled. However nowadays it's long time obsolete and unsecure.
Matus UHLAR - fantomas, uhlar at fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
"They say when you play that M$ CD backward you can hear satanic messages."
"That's nothing. If you play it forward it will install Windows."

More information about the bind-users mailing list