Skip to content

Comment on Show HN: BIND9 Denial of Service Exploit Checker

Comments

The problem with checking version.bind is that SOP for configuring BIND securely has been to disable or spoof it for some time now.

Yes, that is a problem. 'Hardened' configurations cannot be checked. But there are a lot of non-hardened configuration. Actually there are more that returns there version than not.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.