We support Microsoft .NET Framework 2.0 & 1.1, all versions of Access, SQL 2000, SQL 7.0, SQL 2005 Express, SOAP, FrontPage 2002, 2003, Visual Studio 2005, Index Server, XML, UDDI, & Mobile device support. We also offer great third party tools like SmarterMail, Merak Mail, SmarterStats, PHP, Perl, MySql, DeepMetrix Livestats XSP 8.0.   We support Microsoft .NET Framework 2.0 & 1.1, all versions of Access, SQL 2000, SQL 7.0, SQL 2005 Express, SOAP, FrontPage 2002, 2003, Visual Studio 2005, Index Server, XML, UDDI, & Mobile device support. We also offer great third party tools like SmarterMail, Merak Mail, SmarterStats, PHP, Perl, MySql, DeepMetrix Livestats XSP 8.0.
 Thursday, August 07, 2008

How do I read the results table?

Scatterplots:
The scatterplots are provided as an additional safety check. Even if the tests show that the server passes, the values may still be easy to predict. If so, the graph may show patterns that are easy for human eyes to recognize. If you see an obvious pattern in either of the images, your DNS server has a poor or nonexistant source of randomness.

Based on the results, a DNS server is vulnerable if:
The query source ports or the query IDs from a given server match or are easily predictable. Matching query source ports make it easier to spoof results to the DNS server, poisoning its cache. Matching query IDs are usually an indication of a misconfigured DNS server, while changing query IDs that are predictable also make DNS cache poisoning easier.

*Vulnerability:

A server that is subtly vulnerable is making an attempt to randomize or otherwise change its source port and query IDs, but it appears that the source it uses for random numbers is weak or predictable. Fixing this problem will most likely require patching the operating system the DNS server is running on. If the server is under your control, please apply any security patches it has available. If the server is not under your control, contact the owner and inform them of the issue, or switch to a different DNS provider, such as SOADNS.

Name
E-mail
Home page

Comment (HTML not allowed)  

Enter the code shown (prevents robots):