Mitigating CVE-2008-1447…DNS Cache Poisoning Pt.2

Still some confusion out there as to what conditions need to exist for the latest DNS cache poisoning vulnerability. Many people are thinking that once they patch their DNS servers that the risk has been mitigated. However I am finding there are quite a few people that are not aware of the PAT/HideNAT component to [...]

Mitigating CVE-2008-1447…DNS Cache Poisoning

There is a huge issue that was raised a few weeks ago about a vulnerability in DNS and how a DNS server’s cache can be poisoned. There is a lot of information out there describing this latest vulnerability. Basically what it boils down to is that non-randomized source ports combined with request IDs within DNS [...]

Enabling SPlat Pro after installation

Had a question from a customer last week. They had a bunch of R65 SPlat gateways out in the field. In past they were just passing BGP and OSPF, and they now wanted some of them to participate in dynamic routing. To do this they would need to updgrade to SPlat Pro. The concern was [...]