Jump to:navigation, search
Wiki





notempty
Dieser Artikel bezieht sich auf eine nicht mehr aktuelle Version!

notempty
Der Artikel für die neueste Version steht hier

notempty
Zu diesem Artikel gibt es bereits eine neuere Version, die sich allerdings auf eine Reseller-Preview bezieht































De.png
En.png
Fr.png









DNS Rebinding Prevention

Last adaptation to the version: 12.6.1

New:
  • Updated to Redesign of the webinterface
notempty
This article refers to a Resellerpreview
Access: Application Nameserver  Area DNS Rebinding













DNA rebinding attack and prevention

This type of attack attempts to gain access to internal resources using falsified DNS responses.

The attacker needs nothing more than a domain with malicious code and a name server that answers all DNS queries for the attacker site.

DNS rebinding prevention prevents internal IP addresses from the local network from being issued in response to a DNS query.



Configuration

DNS Rebinding Prevention is configured under Applications Nameserver  Area DNS Rebinding Prevention.

Caption Value Description Nameserver UTMuser@firewall.name.fqdnApplications UTM v12.6.0 Anwendungen Nameserver DNS Rebinding Prevention-en.pngDNS Rebinding Prevention tab
DNS Rebinding Prevention: On
default
Activates DNS rebinding prevention
Mode: Automatic In the factory settings, all private IP addresses (class A, B and C) are blocked.
The corresponding private IPv6 addresses and the unique local unicast address are also protected in automatic mode.
Custom The addresses can be set manually.
Protected addresses:     All addresses that are protected by the prevention are displayed here.
Saves the settings
Protected aliases
The DNS entries already configured are activated as protected aliases by default.


If the aliases already configured in the Zones tab are to be excluded from protection, they can be deactivated. Off