What is a DNS Amplification Attack, and how to mitigate it in named/bind.
Issue
- Security team have identified a security vulnerability in our DNS server during recent Defensics fuzz testing.
- DNS server vulnerability related to amplification and reflective DoS attacks, with a Bandwidth Amplification Factor (BAF) of 3.121, identified during recent Defensics fuzz testing.
Environment
- Red Hat Enterprise Linux (RHEL)
- bind/named
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.