#1  
Old 25th May 2007, 20:59
msource msource is offline
Member
 
Join Date: May 2007
Posts: 58
Thanks: 0
Thanked 0 Times in 0 Posts
Default Open DNS servers

I,

on DNSSTUFF, doing a report on a domain in my DNS Server's, i saw a FAIL in Open DNS servers.

There is anyway in MyDNS to mask/fake this pioint? Ore there are anything that a don't do and now is worng?

FAIL

Open DNS servers

ERROR: One or more of your nameservers reports that it is an open DNS server. This usually means that anyone in the world can query it for domains it is not authoritative for (it is possible that the DNS server advertises that it does recursive lookups when it does not, but that shouldn't happen). This can cause an excessive load on your DNS server. Also, it is strongly discouraged to have a DNS server be both authoritative for your domain and be recursive (even if it is not open), due to the potential for cache poisoning (with no recursion, there is no cache, and it is impossible to poison it). Also, the bad guys could use your DNS server as part of an attack, by forging their IP address. Problem record(s) are:

Server 62.48.187.50 reports that it will do recursive lookups. [test]
Server 62.48.187.49 reports that it will do recursive lookups. [test]
See this page for info on closing open DNS servers.

Sincirely,
Marcos Pinto
Reply With Quote
  #2  
Old 26th May 2007, 00:27
edge edge is online now
Moderator
 
Join Date: Dec 2005
Location: The Netherlands
Posts: 1,721
Thanks: 148
Thanked 98 Times in 91 Posts
Default

http://www.howtoforge.com/forums/showthread.php?t=6900
(Please note that this is for ISPconfig. I do not know the path for MyDNSConfig)
Reply With Quote
  #3  
Old 4th July 2007, 14:34
msource msource is offline
Member
 
Join Date: May 2007
Posts: 58
Thanks: 0
Thanked 0 Times in 0 Posts
Default

I,

That Fix is for Bind, could someone know's how to FIX in MyDNS?

Sincerely,
Marcos Pinto
Reply With Quote
  #4  
Old 5th July 2007, 14:39
falko falko is offline
Super Moderator
 
Join Date: Apr 2005
Location: Lüneburg, Germany
Posts: 31,853
Thanks: 781
Thanked 1,558 Times in 1,477 Posts
Default

I think the recursive setting is what you're looking for: http://mydns.bboy.net/doc/html/mydns_32.html#SEC32
__________________
Falko
--
Follow me on:
Reply With Quote
  #5  
Old 9th November 2007, 12:40
msource msource is offline
Member
 
Join Date: May 2007
Posts: 58
Thanks: 0
Thanked 0 Times in 0 Posts
Exclamation

Hi Falko,

I follow this toturial: http://www.howtoforge.com/mydns_mydn...on_ubuntu_edgy

Installed on debian etch, with two NS server's with MySQL DB Replication.

What i whant is to "maskarate" the messege OpenDNS. When i do a test on one domain.tld in www.dnsstuff.com, it apeers a message [Open DNS servers(Server 62.48.187.49 reports that it will do recursive lookups.) ], i know that in BIND we can change the config for this option apears changed but the resursion is active the same.

How can we do this in MyDNS ?
Reply With Quote
  #6  
Old 14th November 2007, 10:58
till till is offline
Super Moderator
 
Join Date: Apr 2005
Location: Lüneburg, Germany
Posts: 19,805
Thanks: 285
Thanked 1,805 Times in 1,357 Posts
Default

Comment out the line:

recursive = 127.0.0.1

in mydns.conf and restart mydns.
__________________
Till Brehm
--
http://www.projektfarm.com/en/
Reply With Quote
  #7  
Old 20th April 2008, 09:40
attadaved attadaved is offline
Junior Member
 
Join Date: Apr 2008
Posts: 2
Thanks: 0
Thanked 0 Times in 0 Posts
Default Try www.dnsenquiry.com as a dnsstuff replacement

Try www.dnsenquiry.com as a dnsstuff replacement
Reply With Quote
  #8  
Old 22nd June 2008, 17:45
aamir_usaf aamir_usaf is offline
Junior Member
 
Join Date: Jun 2008
Posts: 5
Thanks: 0
Thanked 0 Times in 0 Posts
Default

thanx alot
Reply With Quote
  #9  
Old 22nd June 2008, 17:46
aamir_usaf aamir_usaf is offline
Junior Member
 
Join Date: Jun 2008
Posts: 5
Thanks: 0
Thanked 0 Times in 0 Posts
Default

........................sorry
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
DNS Configuration Problems VMartins Installation/Configuration 10 24th July 2007 15:40
Unable send receive emails vassilis3 Installation/Configuration 15 19th May 2007 15:34
No SPF record. beryl Installation/Configuration 6 17th May 2007 20:52
Howto suggestion suse PhP ver 4 + Ver 5 wwparrish Suggest HOWTO 11 7th August 2006 14:29
open ports rayit General 6 18th January 2006 15:23


All times are GMT +2. The time now is 12:22.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Sponsored Links: Unified Communications: Thoughts, Strategies and Predictions
Join the discussion.
www.seamlessenterprise.com

IP Convergence
Integrate your wireless and wireline networks.
Learn how from the experts at Sprint.
www.seamlessenterprise.com

Wireless & Wireline Integration
Thoughts, strategies and solutions: join the discussion
www.seamlessenterprise.com

Unified Communications 2009
Join the Discussion. Now.
www.seamlessenterprise.com

Red Hat Virtual Experience - a free virtual event. Dec. 9th