From owner-freebsd-isp Tue Feb 27 17:12:42 2001 Delivered-To: freebsd-isp@freebsd.org Received: from mail.k2access.net (mail.k2access.net [63.140.99.50]) by hub.freebsd.org (Postfix) with ESMTP id E10C937B718 for ; Tue, 27 Feb 2001 17:12:36 -0800 (PST) (envelope-from exs@kka.com) Received: from mephisto ([208.41.204.124]) by mail.k2access.net (Post.Office MTA v3.5.3 release 223 ID# 0-59171U1000L100S0V35) with SMTP id net for ; Tue, 27 Feb 2001 19:11:35 -0600 Reply-To: From: "Eric D. Stanfield" To: "freebsd2" Subject: RE: bind attacks Date: Tue, 27 Feb 2001 19:12:30 -0600 Message-ID: <004201c0a123$85f495a0$7ccc29d0@thestanfields.com> MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Priority: 3 (Normal) X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook IMO, Build 9.0.2416 (9.0.2910.0) In-Reply-To: Importance: Normal X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200 Sender: owner-freebsd-isp@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org I've been getting core dumps in bind every other day for the past couple of weeks. I took it as no coincidence that the software which had never (not once) faulted in a year started going down very often just after the cert note came out. Unfortunately I've not yet had the time to upgrade the servers. What is the general impression of the upgrade process from those who've succesfully done so? Initially I saw a lot of posts about the new release being very syntax specific and a lot of problems resulting thereof. Anything to watch out for beyond using the proper syntax in your zone files? All my bind boxes are freebsd, of course. > -----Original Message----- > From: owner-freebsd-isp@FreeBSD.ORG > [mailto:owner-freebsd-isp@FreeBSD.ORG]On Behalf Of Leif Neland > Sent: Tuesday, February 27, 2001 7:02 PM > To: Len Conrad > Cc: freebsd-isp@FreeBSD.ORG > Subject: bind attacks, was: tinydns > > > > > On Wed, 28 Feb 2001, Len Conrad wrote: > > > > > >There you go. I'm 99.9% sure the upgrade will fix it. > > > > Me, too, Troy. > > > > After months of stability with 8.2.3 TxB on NT4 and 8.2.2p5 on > > FreeBSD, in early Feb, I began having named stopping (I suspect > > script kiddies just taking down every DNS they could find). > > > The CERT advisories does not show any hole which just kills named. (If I > read correctly). > To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-isp" in the body of the message