Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Firewalls
[Top] [All Lists]

RE: Max DNS reply length - 1024 or 4096?

Subject: RE: Max DNS reply length - 1024 or 4096?
Date: Tue, 22 Mar 2005 08:18:11 -0000
There's not a lot else you can do,  its also not just AOL that will
cause you the problem any one using MS DNS will also cause you this
problem.

 

The fix-up protocol for the PIX is now a little dated, the defaults in
version 7 are different.

 

I've changed my FIX-UP length to 1024 and it now seems ok.

 

HTH

 

Andy

 

________________________________

From: Bill Stout [mailto:bill.stout@greenborder.com] 
Sent: 21 March 2005 22:13
To: firewalls@securityfocus.com
Subject: Max DNS reply length - 1024 or 4096?

 

In my PIX I have "fixup protocol dns maximum-length 768", and need to
increase it due to delayed email delivery to users at AOL (due to DNS
lookup errors).

Does anyone know the drawbacks of increasing max DNS length, and what is
a reasonable reply size?

Thanks,

Bill Stout

Security Lab, GreenBorder 

www.greenborder.com <http://www.greenborder.com>  

GreenBorder reviewed by Infoworld -
http://www.infoworld.com/GreenBorder_Professional_Edition_2.7.2/product_
57709.html?view=1&curNodeId=0
<http://www.infoworld.com/GreenBorder_Professional_Edition_2.7.2/product
_57709.html?view=1&curNodeId=0> 

GreenBorder reviewed by KeyLabs -
http://www.greenborder.com/downloads/GreenBorder_KeyLabs_Report.pdf
<http://www.greenborder.com/downloads/GreenBorder_KeyLabs_Report.pdf>  

<Prev in Thread] Current Thread [Next in Thread>