Re: DNS Cache poisoning and pdnsd


On Wed, 09 Jul 2008, Kapil Hari Paranjape wrote:
> The Debian advisory does not mention the status of "pdnsd" w.r.t the
> DNS cache poisoning problem. A quick check seems to suggest that
> "pdnsd" also randomises the source port while sending out a query.

According to the following URL Dan Kaminsky's cat's whiskers may already
be out of the bag[*] and source port randomisation may not be enough.




[*] Sorry for the sub-metaphor --- I liked it so I added it.

