System is querying to Public Root Servers at midnight.
Issue
-
Network team can see DNS traffic going to public IPs at specific time like midnight
-
Network Team need to make sure no such requests are made from system.
-
Avoid
unbound-anchor
from making external network or public connections -
Sample IP addresses which are being queried are [These are IPs of root DNS server]:
199.7.83.42 199.7.83.42 192.58.128.30 192.58.128.30 199.7.83.42 192.5.5.241 192.5.5.241 199.7.83.42
Environment
- Red Hat Enterprise Linux
- unbound-anchor
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.