On Tue, Jul 22, 2008 at 2:32 PM, Eugen Leitl <[EMAIL PROTECTED]> wrote:
>
> http://www.provos.org/index.php?/pages/dnstest.html
>
> DNS Resolver Test
>
> For secure name resolution, it is important that your DNS resolver uses 
> random source ports. The box below will tell you if there is something you 
> need to worry about.
>
> Your DNS Resolver needs to be updated.
>
> If the box says that you are using random ports, there is nothing to worry 
> about. If it shows a red border, your resolver does not use completely random 
> source ports. This could imply a security problem; see the following CERT 
> advisory. However, some resolvers have implemented countermeasures that do 
> not solely rely on random source sources.
>
> There is a little bit more information about this security problem on Dan 
> Kaminsky's blog.
>
> Should be we getting worried now?

If anyone is worried then update their dnsmasq.

http://blog.pfsense.org/?p=210

Scott

Reply via email to