Mailing List Archive
tlug.jp Mailing List tlug archive tlug Mailing List Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][tlug] DNS zone transfer
- Date: Thu, 30 Jan 2003 12:29:44 +0900
- From: Botond Botyanszki <9915104t@example.com>
- Subject: [tlug] DNS zone transfer
- Organization: Kobe University
I'm getting the following logs from snort every 5 minutes. This all started about 3 days ago. Jan 30 11:44:02 mick snort: [1:255:2] DNS zone transfer [Classification: Attempted Information Leak] [Priority: 2]: {TCP} x.x.x.x:2310 -> y.y.y.y:53 Jan 30 11:48:59 mick snort: [1:255:2] DNS zone transfer [Classification: Attempted Information Leak] [Priority: 2]: {TCP} x.x.x.x:2313 -> y.y.y.y:53 Both the target and source have NS services running. I don't see why the above should be considered bad or harmful. Could someone enlighten me before I disable this snort rule?
- Follow-Ups:
- Re: [tlug] DNS zone transfer
- From: Matt Doughty
- Re: [tlug] DNS zone transfer
- From: Tim Hurman
Home | Main Index | Thread Index
- Prev by Date: Re: [tlug] hide ssh banner
- Next by Date: Re: [tlug] DNS zone transfer
- Previous by thread: Re: [tlug] BP6 meltdown
- Next by thread: Re: [tlug] DNS zone transfer
- Index(es):
Home Page Mailing List Linux and Japan TLUG Members Links