17 Jan
2006
17 Jan
'06
4:30 p.m.
In message <200601170913.46868.simonw@zynet.net>, Simon Waters writes:
I think the general consensus in the DNS field is that for security reasons it is preferable to have as small a set of DNS servers (or perhaps as small as set of differently configured servers! Hmm physical security....) in the hierarchy above you as possible, since compromise of any of these could affect the results obtained for your domain.
See http://www.usenix.org/events/imc05/tech/ramasubramanian.html --Steven M. Bellovin, http://www.cs.columbia.edu/~smb