Wednesday, July 09, 2008

OpenDNS and the DNS Security Flaw

I found another reason to run OpenDNS. Brian Krebs of the Washington Post recently posted about a newly revealed security problem in the design of DNS.

Brian linked to Dan Kaminsky's blog. Dan has a gadget on his page that will check YOUR DNS server. You know me. Like the bank robber in "Dirty Harry," "I gots to know."

Here's what the test reported for OpenDNS:

Then I went to another PC that is using BellSouth's DNS servers:

You be the judge.

