You are here: silicon.com > Networks > WebWatch

WebWatch

DNS security still "as vulnerable as ever"

Still an issue for network administrators

Tags: dns, security, servers, microsoft

By Colin Barker

Published: 21 November 2007 08:59 GMT

The security of domain name system (DNS) continues to be an issue for network administrators, despite the availability of more secure DNS servers such as BIND 9, according to a survey by network appliance company, Infoblox.

According to the survey, DNS infrastructure is modernising and coalescing around the most recent versions of BIND - a type of DNS server software. However, a problem Infoblox noted is more than 50 per cent of DNS servers still allow recursion and zone transfers, "indicating that the global DNS system is as vulnerable as ever". Recursion can leave DNS systems vulnerable to DNS cache poisoning and amplification attacks that can "bring down major networks", said Infoblox.

Security from A to Z

Click on the links below to find out more...

A is for Antivirus
B is for Botnets
C is for CMA
D is for DDoS
E is for Extradition
F is for Federated identity
G is for Google
H is for Hackers
I is for IM
J is for Jaschan (Sven)
K is for Kids
L is for Love Bug
M is for Microsoft
N is for Neologisms
O is for Orange
P is for Passwords
Q is for Questions
R is for Rootkits
S is for Spyware
T is for Two-factor authentication
U is for USB sticks/devices
V is for Virus variants
W is for Wi-fi
X is for OS X
Y is for You
Z is for Zero-day

The survey - conducted over the past three years - found the DNS system is growing overall, which is an indicator of internet growth in general.

At the same time, the use of BIND 9 DNS server code is increasing more quickly than other varieties of DNS server code. Infoblox considers BIND 9 more secure than older versions of BIND, as it "has a substantially better security track record ", according to Cricket Liu, Infoblox vice president of architecture.

Meanwhile, Microsoft DNS Server, which Infoblox considers a less secure type of DNS server code, has charted a continual rapid decline for three years. Liu wrote: "Microsoft DNS Server's [market] share continued its dramatic decline, from about 4.6 per cent to 2.7 per cent. Perhaps this is because administrators have become warier of exposing the Microsoft DNS Server and Windows operating systems directly to the internet."

Microsoft DNS Server market share fell from 10 per cent in 2005, to 4.6 per cent in 2006, then to 2.7 per cent in 2007, according to the survey. Infoblox said its decreased use was a positive step.

The survey was based on a sample that included five per cent of the IPv4 address space - nearly 80 million addresses.

Colin Barker writes for ZDNet.co.uk

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure
Read and write about internet access at the airports of the world at atlarge.com. Be the first to rate an airport, win champagne...

Natasha Lomas RIM co-CEO: Qwerty is the next big thing Q&A: Mike Lazaridis, on why smart phones - and keyboards - are the future...

Howard Greenfield Tech Futures: The talkification of the web A software switch gives browsers a voice...


Platform Team Leader - 40000 - Sheffield

DNS: Implementation and administration of DNS servers based on BIND 9.x and NSD on Linux servers. Knowledge of new and emerging DNS technologies such ...

SYSTEMS ADMINISTRATOR -LINUX/UNIX - WEST END -40-50k

The skills required for the role include: - LINUX - A good understanding of INTERNET/WEB APPLICATIONS - TCP/IP/ DHCP/DNS - Perl scripting - ...

Linux System Administrator (RedHat, MySQL, DNS, Apache, RAID, SMTP)- Nottingham, Midlands

Job Title: Linux System Administrator (RedHat, MySQL, DNS, Apache, RAID, SMTP)- Nottingham, Midlands Location: Nottingham, Midlands Salary: Very Good ...

CIO Agenda 2008
The exclusive silicon.com CIO Agenda 2008 survey looks at the CIO's tech shopping list for the year, examines whether IT budgets are rising or falling and reveals what the pain points are for tech chiefs this year. Find out more in our latest special report.





Quick Sitemap Links: