Displaying 1 result from an estimated 1 matches for "170088".
Did you mean:
10088
2014 Feb 09
3
bind (named) compromised?
...following in /etc/named.conf but it doesn't seem
to have any affect so I commented them back out.
tcp-clients 1000;
recursive-clients 10000;
I also see a chroot directory, but if I grep for named it doesn't appear
to be using the chroot(?):
# ps aux | grep named
named 3497 0.4 0.7 170088 15836 ? Ssl 23:02 0:02
/usr/sbin/named -u named
root 3763 0.0 0.0 61192 764 pts/1 S+ 23:13 0:00 grep named
I've also tried adding the following to iptables, but it also seems to
have no affect:
iptables --insert INPUT -p udp --dport 53 -m string --from 40 --to 56...