Our network is usually protected by a firewall software. But my predecessor put both the primary / secondary DNS server, responsible for dealing with domains outside the network world that are protected by firewalls. Is there a best way to protect DNS servers from unwanted guests? ( Gather from the Internet ).
There have been a number of, but not many, ways of addressing the threat of DNS servers against hackers. You should set the DNS server after an existing firewall and give them IP addresses. When allowing port 53 to pass through the firewall, make sure that both TCP and UDP must be passed. I learned this 'bloody' lesson when I first set up DNS servers behind a firewall. Many interrupt issues in the Domain Name System (DNS) solution appear continuously until TCP and UDP are passed through the firewall at port 53.
Or, you can set the DNS server after a private firewall that is not connected to the network. Thus, if a firewall or no DNS server is compromised, your network is not at risk, because the connection is not direct. If you install a third DNS server (assuming only 2 DNS servers were available at that time), you can perform other protection options. In this configuration, both DNS servers are secondary DNS systems. DNS information on the server cannot be changed directly. Non-authentication changes only last until the secondary server receives an update from the newly installed primary server. For successful execution, the primary DNS server does not provide a generic IP address and is configured to contact only the secondary DNS server.
The DNS software you are using may allow some other options. For example, Bind 9 supports the component that calls the viewer, preventing the DNS server from coming out of the domain system solution on domain servers that are not configured to provide live information. That is, this is not a common source of DNS servers anyone can use. Extended traffic can be 'disrupted' using DNS servers for domains they don't serve.
How to protect DNS server against hackers
Our network is usually protected by a firewall software. But my predecessor put both the primary / secondary DNS server, responsible for dealing with domains outside the network world that are protected by firewalls. C&A
4 ★ | 2 Vote
Read More
- How to secure SSH server
- 6 tips to protect your printer from hackers
- Classify hackers and career opportunities for true hackers
- Do you know who white hat hackers are and how their lives are?
- [Infographic] Things to know about a hacker
- Microsoft has a group of 'elite' hackers that specialize in attacking Windows to keep the operating system safe
- Can your data be stolen when using public Wifi?
- The whole city had to return to the 'stone' era using typewriters because the entire computer system was hacked
- Hackers Hate These 6 Email Settings! Turn Them On Now!
- NASA servers are hacked by hackers
- The difference between web server and app server
- Test knowledge about hacking
- Network basics: Part 3 - DNS Server
- Steps to configure proxy server settings in Windows 10