Graves on SOHO Technology

End User Perspective On SOHO Technology
  • rss
  • Home
  • About
    • Contact
    • Advertisers
    • Disclosure
  • Guides & How-To’s
  • Product Reviews
  • Best of…
  • Raves

m0n0wall & DNS Vulnerability

mjgraves | July 22, 2008

m0n0wall 128x34 m0n0wall & DNS Vulnerability

It appears that Dan Kaminsky’s DNS vulnerability is now out in the open. Or maybe it isn’t. Who knows. There was a lot of noise about vendors and ISPs dealing with patches, etc.

Happily, it appears that m0n0wall is not significantly affected. Manuel Kasper made a post on the user mailing list some time ago announcing v1.3b13-pre with an update to Dnsmasq. I installed this today without incident.

Words cannot express how much I appreciate m0n0wall. It’s simply fantastic for SOHO situations like my office.

Categories
Broadband
Tags
dns, dnsmasq, m0n0wall, monowall, technology, update
Comments rss
Comments rss
Trackback
Trackback

« How To: DIY Music Server Using FreeNAS & A T5700 Thin Client Today's VOIP Users Call & My SIP URI »

2 Responses to “m0n0wall & DNS Vulnerability”

  1. Lonnie says:
    July 23, 2008 at 7:43 am

    A related note, with the new DNS port randomization some people are having problems with SIP/RTP configurations and wide UDP port forwardings, like asterisk’s default of 10000-20000.

    The results is random DNS failures when it collides with the wide RTP port forwards.

    A solution is to reduce the size of your RTP port range in rtp.conf (rtpstart and rtpend) and your inbound NAT forwarding settings in m0n0wall.

    Lonnie

    Reply
  2. mjgraves says:
    July 23, 2008 at 8:27 pm

    Excellent info! Thanks for letting me know.

    Reply

Leave a Reply

Click here to cancel reply.

Recent Comments

  • mjgraves on The iPhone In My Office
  • mjgraves on Blogging In Transition: A Host Of Issues – Act One
  • mjgraves on Gigaset SIP/DECT Handsets For 2010: Part 6 – SL78H
  • Larry C on Blogging In Transition: A Host Of Issues – Act One
  • Vince on Gigaset SIP/DECT Handsets For 2010: Part 6 – SL78H

Making Use Of HDVoice Right Now!

  • Series Introduction
  • HDVoice Using Skype
  • HDVoice Using Gizmo5
  • HDVoice Using SIPGate
  • HDVoice Using OnSIP
  • HDVoice Using IdeaSIP
  • HDVoice Using SIP Sorcery

Making A Difference


Change a life.

VoIP Users Conference

Tags

3G A580IP apple Asterisk Astlinux Audio blog Broadband CATiq cellular codec conference cordless DECT digium DSL FWD G.722 gateway Gigaset gsm HD hdvoice headset hp M3 music onsip phone polycom QoS siemens sip skype SNOM soft phone sprint Squeezebox technology USB Video VoIP VUC wideband wifi

RSS mgraves' shared items in Google Reader

  • HP introduces Mini 5103 business class netbook with Atom N550 processor
  • Acrobits iPhone SIP app Groundwire on sale today
  • TweedleD Back From the Dead Using Twitter OAuth
  • Gigaset DX800A – the new all-round phone for professionals sets high standards
  • will gmail calling make headset calling more comonplace
  • Intel Infineon: history repeats itself
  • Network Neutrality Is Law In Chile
  • Dili Village Telco Part 10
  • HP bringing dual-core Atom N550 to Mini 5103, other netbooks expected to follow
  • Why Apple’s iTV Needs FaceTime

Archives

  • ▼2010 (118)
    • ▼September (1)
      • Blogging In Transition: A Host Of Issues – Act Three
    • ▶August (15)
    • ▶July (16)
    • ▶June (17)
    • ▶May (15)
    • ▶April (17)
    • ▶March (16)
    • ▶February (8)
    • ▶January (13)
  • ▶2009 (229)
    • ▶December (16)
    • ▶November (15)
    • ▶October (13)
    • ▶September (24)
    • ▶August (23)
    • ▶July (18)
    • ▶June (16)
    • ▶May (17)
    • ▶April (22)
    • ▶March (18)
    • ▶February (21)
    • ▶January (26)
  • ▶2008 (297)
    • ▶December (26)
    • ▶November (23)
    • ▶October (24)
    • ▶September (26)
    • ▶August (21)
    • ▶July (32)
    • ▶June (24)
    • ▶May (16)
    • ▶April (14)
    • ▶March (29)
    • ▶February (22)
    • ▶January (40)
  • ▶2007 (14)
    • ▶December (8)
    • ▶November (5)
    • ▶October (1)

Meta

  • Register
  • Log in
  • Entries RSS
  • Comments RSS
  • WordPress.org
rss Comments rss valid xhtml 1.1 design by jide powered by Wordpress get firefox