Major page UPDATE: 22/06/2008.
Lilypie 1st Birthday PicLilypie 1st Birthday Ticker

Lilypie 3rd Birthday PicLilypie 3rd Birthday Ticker Morgan Storey's Journal.

Wednesday, August 27, 2008

Pretty lights 

More on DNS I know. May as well be another person beating a dead horse. But I give you pretty: http://www.doxpara.com/?p=1206
It is a video of the patched and not patched world wide. It intrigues me that there is a blinking light on the map of Australia about 3 hours north of Adelaide, I doubt it is Alice Springs, to south, maybe Coober Peadie if my geography serves.
Onto some more supposition by me (mainly in reply to Dan [the guy who discovered the Researched the DNS flaw] here);
I agree with what has been said, that we need more security on an inherintly in-secure network. But some (percieved) anonymity and some plain text is good, and what the internet is all about.
Could you imagine every site moving to https, for starters what is the point, who needs to read my blog through an encrypted channel? Really why, I don't really have any direct post functionality, and only a handful of readers, it is not like I am directing them to blindly do anything either.
Onto DNS, I was thinking the other day of another way to fix the issue. Deploy a port knocking technique on the reply based on the query, so that ports would have to be knocked in the correct order on the DNS server pre accepting back the lookup. Similar to the way a person gets into a safe, knowing the numbers isn't good enough you need to know the sequence. This would stop NAT being an issue as the DNS server can make the request out on all ports getting an auto map back on these ports. And would be more secure as the attacker would have to guess the right ports to knock on the way back, or read the request and then generate the reply and reply back, but if they can do that they are already in the middle and its game is over.
What do you think?
Peace out all, especially Dan, good job.

Labels: ,


Comments: Post a Comment

Archives

07/01/2003 - 08/01/2003   08/01/2003 - 09/01/2003   09/01/2003 - 10/01/2003   10/01/2003 - 11/01/2003   11/01/2003 - 12/01/2003   12/01/2003 - 01/01/2004   01/01/2004 - 02/01/2004   02/01/2004 - 03/01/2004   03/01/2004 - 04/01/2004   04/01/2004 - 05/01/2004   05/01/2004 - 06/01/2004   07/01/2004 - 08/01/2004   09/01/2004 - 10/01/2004   11/01/2004 - 12/01/2004   12/01/2004 - 01/01/2005   01/01/2005 - 02/01/2005   02/01/2005 - 03/01/2005   03/01/2005 - 04/01/2005   04/01/2005 - 05/01/2005   05/01/2005 - 06/01/2005   06/01/2005 - 07/01/2005   07/01/2005 - 08/01/2005   08/01/2005 - 09/01/2005   09/01/2005 - 10/01/2005   10/01/2005 - 11/01/2005   11/01/2005 - 12/01/2005   12/01/2005 - 01/01/2006   03/01/2006 - 04/01/2006   05/01/2006 - 06/01/2006   06/01/2006 - 07/01/2006   07/01/2006 - 08/01/2006   09/01/2006 - 10/01/2006   11/01/2006 - 12/01/2006   09/01/2007 - 10/01/2007   04/01/2008 - 05/01/2008   05/01/2008 - 06/01/2008   06/01/2008 - 07/01/2008   07/01/2008 - 08/01/2008   08/01/2008 - 09/01/2008   09/01/2008 - 10/01/2008   11/01/2008 - 12/01/2008  

This page is powered by Blogger. Isn't yours?

 

 

Home
  Mobile Blog
  Security Blog
About me
Fiona
My Friends
My Computers
About LRP
My Family
Message board
My Jaunts
My Projects
My Resume
Other Journals
Downloads
Links

E-mail Me

No Clean Feed - Stop Internet Censorship in Australia

RSS Feed        Atom Feed
RSS or ATOM

 

 

Fight Spam!