<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: DNS Amplification Denial of Service &#8211; GoDaddy DNS Servers Fail PCI Compliance</title>
	<atom:link href="http://i.nconspicuo.us/2009/03/23/dns-amplification-denial-of-service-godaddy-dns-servers-fail-pci-compliance/feed/" rel="self" type="application/rss+xml" />
	<link>http://i.nconspicuo.us/2009/03/23/dns-amplification-denial-of-service-godaddy-dns-servers-fail-pci-compliance/</link>
	<description>Uncovering the hidden treasures of the internet, tech toys... and life.</description>
	<lastBuildDate>Wed, 01 Feb 2012 02:01:05 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Teresa</title>
		<link>http://i.nconspicuo.us/2009/03/23/dns-amplification-denial-of-service-godaddy-dns-servers-fail-pci-compliance/comment-page-1/#comment-174682</link>
		<dc:creator>Teresa</dc:creator>
		<pubDate>Fri, 24 Apr 2009 21:35:51 +0000</pubDate>
		<guid isPermaLink="false">http://i.nconspicuo.us/?p=363#comment-174682</guid>
		<description>The vulnerability scans for PCI Compliance were stating that my DNS server had a problem of allowing third-party recursive queries and thus they failed the scan. I have done more digging and discovered it was actually my DSL Modem/Router that was allowing third-party recursive look-ups and NOT AT&amp;T&#039;s DNS servers. I have resolved the problem with my router, passed the vulnerability scan and am now PCI Compliant. And I am still using AT&amp;T&#039;s DSL service with their DNS. So AT&amp;T&#039;s DNS is compliant.</description>
		<content:encoded><![CDATA[<p>The vulnerability scans for PCI Compliance were stating that my DNS server had a problem of allowing third-party recursive queries and thus they failed the scan. I have done more digging and discovered it was actually my DSL Modem/Router that was allowing third-party recursive look-ups and NOT AT&amp;T&#8217;s DNS servers. I have resolved the problem with my router, passed the vulnerability scan and am now PCI Compliant. And I am still using AT&amp;T&#8217;s DSL service with their DNS. So AT&amp;T&#8217;s DNS is compliant.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: i.nconspicuo.us</title>
		<link>http://i.nconspicuo.us/2009/03/23/dns-amplification-denial-of-service-godaddy-dns-servers-fail-pci-compliance/comment-page-1/#comment-172696</link>
		<dc:creator>i.nconspicuo.us</dc:creator>
		<pubDate>Thu, 16 Apr 2009 01:56:14 +0000</pubDate>
		<guid isPermaLink="false">http://i.nconspicuo.us/?p=363#comment-172696</guid>
		<description>Hi Teresa -

We just tried moving our domains to namecheap.com (they offer free DNS) and they were non-compliant as well, but they seem to be willing to work with us on getting the issue resolved. I&#039;ll definitely keep you all posted.</description>
		<content:encoded><![CDATA[<p>Hi Teresa -</p>
<p>We just tried moving our domains to namecheap.com (they offer free DNS) and they were non-compliant as well, but they seem to be willing to work with us on getting the issue resolved. I&#8217;ll definitely keep you all posted.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Teresa</title>
		<link>http://i.nconspicuo.us/2009/03/23/dns-amplification-denial-of-service-godaddy-dns-servers-fail-pci-compliance/comment-page-1/#comment-172388</link>
		<dc:creator>Teresa</dc:creator>
		<pubDate>Tue, 14 Apr 2009 22:47:54 +0000</pubDate>
		<guid isPermaLink="false">http://i.nconspicuo.us/?p=363#comment-172388</guid>
		<description>I have found AT&amp;T Yahoo ISP&#039;s DNS servers to be non-compliant, as well. And they too have refused to change their DNS servers for &quot;just one customer&quot;. Can you recommend an ISP provider with PCI Compliant DNS servers? Thanks.</description>
		<content:encoded><![CDATA[<p>I have found AT&amp;T Yahoo ISP&#8217;s DNS servers to be non-compliant, as well. And they too have refused to change their DNS servers for &#8220;just one customer&#8221;. Can you recommend an ISP provider with PCI Compliant DNS servers? Thanks.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: i.nconspicuo.us</title>
		<link>http://i.nconspicuo.us/2009/03/23/dns-amplification-denial-of-service-godaddy-dns-servers-fail-pci-compliance/comment-page-1/#comment-169502</link>
		<dc:creator>i.nconspicuo.us</dc:creator>
		<pubDate>Sat, 04 Apr 2009 03:23:58 +0000</pubDate>
		<guid isPermaLink="false">http://i.nconspicuo.us/?p=363#comment-169502</guid>
		<description>Yes Lawrence, I&#039;ve contacted GoDaddy and they have said that they have no plans to change the way their DNS servers currently work.</description>
		<content:encoded><![CDATA[<p>Yes Lawrence, I&#8217;ve contacted GoDaddy and they have said that they have no plans to change the way their DNS servers currently work.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Lawrence Pingree</title>
		<link>http://i.nconspicuo.us/2009/03/23/dns-amplification-denial-of-service-godaddy-dns-servers-fail-pci-compliance/comment-page-1/#comment-169429</link>
		<dc:creator>Lawrence Pingree</dc:creator>
		<pubDate>Fri, 03 Apr 2009 22:54:07 +0000</pubDate>
		<guid isPermaLink="false">http://i.nconspicuo.us/?p=363#comment-169429</guid>
		<description>I&#039;m concerned as to why you are disclosing this as it seems questionable ethically. Have you reported this to Godaddy and given them time to try and fix this issue. If not, you are not practicing appropriate ethical disclosure.</description>
		<content:encoded><![CDATA[<p>I&#8217;m concerned as to why you are disclosing this as it seems questionable ethically. Have you reported this to Godaddy and given them time to try and fix this issue. If not, you are not practicing appropriate ethical disclosure.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: DP</title>
		<link>http://i.nconspicuo.us/2009/03/23/dns-amplification-denial-of-service-godaddy-dns-servers-fail-pci-compliance/comment-page-1/#comment-165172</link>
		<dc:creator>DP</dc:creator>
		<pubDate>Tue, 24 Mar 2009 16:47:35 +0000</pubDate>
		<guid isPermaLink="false">http://i.nconspicuo.us/?p=363#comment-165172</guid>
		<description>My understanding was that ASVs could not fail clients on DOS since technically you can&#039;t test DOS.  Your opinion?</description>
		<content:encoded><![CDATA[<p>My understanding was that ASVs could not fail clients on DOS since technically you can&#8217;t test DOS.  Your opinion?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

