• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

bind 4.9 security / config question

nuttervm

Golden Member
for those of you still using bind 4.9 (lets hear it for openbsd!) How do you secure your nameserver against all the nasty things that people can do? For that matter, do you actively secure it, or just set it up to work and forget about it?

basically i have a name server and want only some of the entries to be available to outsiders (mostly aliases for the same machine). the rest of them i want for internal people only. I know bind 8 and 9 have more advanced security features, but i dont want to deal with the more complex config (and possible security problems). i've skimmed through my oreilly book on the topic, but i havent spent the time to really read it in-depth. there is no easy way out unfortunately.
 
for those of you still using bind 4.9 (lets hear it for openbsd!) How do you secure your nameserver against all the nasty things that people can do? For that matter, do you actively secure it, or just set it up to work and forget about it?


My answer is to upgrade.
 
Back
Top