不经意间,我运行的 bind9 服务器是一个开放式解析器。哎呀。
现在已经几个月了,递归查询isc.org仍在传入。如果我的/var/log/syslog看起来不像这样,我不介意:
Jul 6 01:10:23 servername last message repeated 6 times
Jul 6 01:10:23 servername named[2580]: client YYY.YY.YYY.YYY#25345: query (cache) 'isc.org/ANY/IN' denied
Jul 6 01:10:23 servername named[2580]: client ZZZ.ZZ.ZZZ.ZZ#25345: query (cache) 'isc.org/ANY/IN' denied
Jul 6 01:10:23 servername last message repeated 7 times
Jul 6 01:10:23 servername named[2580]: client AAA.AAA.A.AAA#25345: query (cache) 'isc.org/ANY/IN' denied
Jul 6 01:10:23 servername named[2580]: client BBB.BB.BB.BBB#25345: query (cache) 'isc.org/ANY/IN' denied
Jul 6 01:10:23 servername last message repeated 6 times
Run Code Online (Sandbox Code Playgroud)
(人们可能会觉得有趣的是,上述消息都在一秒钟内出现......我不再这样做了。) …