FORUM HOME | WHUK BLOG   
WEB HOSTING UK AFFORDABLE WEBSITE HOSTING SERVICES IN UNITED KINGDOM
PHP LINUX SHARED HOSTING WINDOWS ASP.NET HOSTING PACKAGES
ECOMMERCE HOSTING ASP MSSQL MS ACCESS ODBC FRONTPAGE HOSTING
CPANEL WHM FANTASTICO RESELLER DEDICATED SERVER WEB HOSTING
CHEAP PLESK CPANEL HTML MYSQL BEST UK VPS HOSTING COMPANY
CHEAP RELIABLE UK HOSTING PROVIDER SINCE 2001
MANAGED WEB HOSTING SERVICE
AFFORDABLE WEBSITE HOSTING SERVICES IN UNITED KINGDOM

Web Hosting UK Forums | Linux Windows Dedicated Server and cPanel VPS Hosting Forum » Web Hosting and Domains » FAQ's / Tutorials.

Reply
 
LinkBack Thread Tools Display Modes

  #1 (permalink)  
Old 30-06-11, 07:39 PM
~Phil~'s Avatar
Member
 
Join Date: Aug 2010
Posts: 32
Default Protecting The DNS server against DDOS

Protecting The DNS server against DDOS

If you are managing a dns server with bind, your server might encounter such attacks. You will need to harden your DNS server (bind) using the below steps.

Check the /etc/hosts.conf and place this line, so that it prevents hostname spoofing.

Quote:
nospoof on

Now in /etc/named.conf
Quote:
Disable recursion

Options {
...
recursion no;
...}
Disable upward referrals (refuse referring to root servers) In the file Prevent spoofing add

Quote:
additional-from-cache no;
Prevent spoofing

In order to prevent spoofing, consider to use-id-pool to generate random message id to make guessing harder.

Quote:
use-id-pool yes; (only for Bind 8.x)

Disable Glue fetching

Quote:
fetch-glue no;
Besides these, be sure to disable notifications and zone transfers in your dns server.

Restrict zone transfers and notifications
Quote:
acl “trusted” {
XX.xx.xx.xx;
YY.YY.YY.YY;
};
allow-notify { trusted; };
allow-transfer { trusted; };
Reply With Quote

  #2 (permalink)  
Old 01-07-11, 06:17 AM
Marketing Team
 
Join Date: Feb 2011
Posts: 373
Default

In order to secure the DNS servers from the DDOS, the following measures can also be adopted; they will surely prove to be very effective.

1. Ensure that the DNS servers are clustered
2. Ensure that the DNS server is placed behind a firewall
3. It is advisable to use the firewall to perform the DNS queries; this reduces the organizational DNS risk
4. The DNS servers should not be chained as this strategy has seen the downfalls
5. Scan the DNS machine and make sure that no other ports are listening apart from the typical DNS ports
6. Remove all the other services from the DNS servers as there can be vulnerabilities within a badly created software
Reply With Quote

Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Forum Jump


All times are GMT. The time now is 07:41 PM.

Powered by vBulletin® Version 3.8.1
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
Copyright 2001-2010 Web Hosting UK. All rights reserved.
Web Hosting UK Forum





Site Map

Shared Cloud
Shared Cloud From £1

Affiliate Program
Earn up to £300 Per Sale

Dedicated Servers
Dedicated Server Hosting

Cloud Hosting
Cloud Server Hosting

Load Balanced Server
Load Balancing Server

VPS Hosting
Linux VPS Hosting

Windows VPS
Windows 2003 VPS

Zimbra Hosting
Zimbra Email Hosting

cPanel Hosting
Shared Linux Hosting

Windows Hosting
Shared Windows Hosting

Coldfusion Hosting
Windows Coldfusion Hosting

cPanel Reseller Hosting
Reseller Hosting

Windows Reseller
Windows Reseller Hosting

Email Web Hosting
Email Hosting

Semi-Dedicated Server
Semi-Dedicated Hosting

Remote Backup Plans
Offsite Backup Service


cpanel hosting
Knowledgebase Articles

Pre-Sales Question
Web Hosting FAQ's

Dedicated Hosting
Dedicated Server FAQ's

Virtual Private Servers
VPS Hosting

PHP MySQL Hosting
cPanel Hosting

Windows Hosting
ASP MSSQL Hosting

Domain Name
Domain registration FAQ's

CMS Hosting
CMS Hosting FAQ's

Payment Gateways
Payment FAQ's


Support Tutorials

cPanel Tutorials
cPanel Flash Tutorials

Wordpress Tutorials
Wordpress Flash Tutorials

Plesk Tutorials
Plesk Flash Tutorials

PhpMyadmin Tutorials
PhpMyadmin Flash Tutorials

Drupal Tutorials
Drupal Flash Tutorials

Mambo Tutorials
Mambo Flash Tutorials

Joomla Tutorials
Joomla Flash Tutorials

More Hosting Tutorials