BIND

Richard Welty rwelty at averillpark.net
Thu Mar 4 12:14:59 UTC 2004


On Thu, 04 Mar 2004 12:03:36 +0000 WipeOut <wipe_out at users.sourceforge.net> wrote:

> Is running BIND still considdered a major security risk??

> I remember a while back it was not considdered a good idea to run your 
> own BIND/DNS server.. (also that I would need to run it on my web/mail 
> server since I only have 1 server)

Bind 9 is fairly good. it's a bit of a resource pig, but the code isn't
bad. run it chrooted and you should be fine.

Bind 8 was a disaster, and the only truly safe
Bind 4 was the audited one included in OpenBSD.

richard
-- 
Richard Welty                                         rwelty at averillpark.net
Averill Park Networking                                         518-573-7592
    Java, PHP, PostgreSQL, Unix, Linux, IP Network Engineering, Security





More information about the fedora-list mailing list