Skip navigation

JSI Tip 1653. How can I prevent DNS spoofing?

The term "spoofing" describes the sending of non-secure data in response to a DNS query. It can be used to redirect queries to a rogue DNS server and can be malicious in nature.

Starting with SP4, you can filter out these non-secure records by using regedt32 to navigate to:

HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\DNS\Parameters

On the Edit menu, Add Value name SecureResponses, a type REG_DWORD entry, and set the data to 1.

Hide comments

Comments

  • Allowed HTML tags: <em> <strong> <blockquote> <br> <p>

Plain text

  • No HTML tags allowed.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Lines and paragraphs break automatically.
Publish