Securing an Internet Name Server


secure Internet Name ServersWhenever you type in the Internet address of a website or an online resource, network servers called name servers translate these Web addresses into network addresses that are suitable for computers. Like everything else on the Web however, these servers are not immune to attacks. In fact they can sometimes be a target for special attacks. When name servers are compromised, this can eventually lead to further compromises across the networks. Learn how to secure Internet Name Servers.

Some common attacks on name servers include Denial of Service (DoS) attacks, spoofing attacks or they can be used to initiate zombie attacks either to spam networks or computers across another network. Because of the important role they play, it is important that network administrators take time, not only to secure connected hosts, but even more importantly, the name servers that those hosts will be using to connect to the Internet.

Name Server Software Upgrade

Older software is known to have vulnerabilities that can be exploited. Upgrading to a new version of your name server software ensures that the risk of exploitation is minimized and any vulnerabilities are fixed. After an upgrade, the software may need to be re-configured again to ensure expected performance or to activate any new features that come with the software.

Eliminate Single Points of Failure

When a name server is attacked or something happens making it impossible to translate network addresses, any hosts that rely on that server will be unable to access the Internet. This can, in turn, affect internal and public systems in a shared network architecture. This problem can be avoided by having name servers located on different subnets and with multiple physical paths to the network. Sometimes, it may be necessary to arrange for an off-site slave name server that will allow communication to take place even when local servers are down.

Others ways that can be used to secure Internet Name Servers include filtering traffic to the servers, restricting zone transfers and restricting dynamic updates which may help lower the risk zone data integrity.

Securing an Internet name server is thus one of the many ways you can protect IP addresses and the associated data.

Related Posts

0 comments… add one

Leave a Comment

Scroll Up