Any workarounds for Verisign .com/.net highjacking?
Michael Edenfield
kutulu at kutulu.org
Tue Sep 16 14:12:58 PDT 2003
* Dan Langille <dan at langille.org> [030916 16:46]:
> On 16 Sep 2003 at 10:23, Clifton Royston wrote:
>
> > In the meantime I'm trying to figure out if there's some simple hack
> > to disregard these wildcard A records, short of requesting zone
> > transfers of the root nameservers (e.g. via peering with
> > f.root-servers.net) and purging those records out of the zone before
> > loading it. Any ideas, either under djbdns or Bind 9?
>
> Sorry, only for bind8, as was posted to my local LUG list:
>
> http://achurch.org/bind-verisign-patch.html
And from NANOG, here are workarounds for Bind9 and djbdns.
http://www.imperialviolet.org/dnsfix.html
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-hackers/attachments/20030916/4d2e192b/attachment.bin
More information about the freebsd-hackers
mailing list