Richard Welty wrote:
On Thu, 04 Mar 2004 12:03:36 +0000 WipeOut <wipe_out@xxxxxxxxxxxxxxxxxxxxx> wrote:
Is running BIND still considdered a major security risk??
I remember a while back it was not considdered a good idea to run your
own BIND/DNS server.. (also that I would need to run it on my web/mail
server since I only have 1 server)
Bind 9 is fairly good. it's a bit of a resource pig, but the code isn't
bad. run it chrooted and you should be fine.
Bind 8 was a disaster, and the only truly safe
Bind 4 was the audited one included in OpenBSD.
richard
When you say "resource pig" how bad are we talking?