/etc/named.conf
file can prevent the named
service from starting.
.
character) correctlynamed
service will append the name of the zone or the value of $ORIGIN
to complete it.
named
service to other nameservers, the recommended practice is to change the firewall settings.
Avoid using fixed UDP source ports
UDP
source port for DNS
queries is a potential security vulnerability that could allow an attacker to conduct cache-poisoning attacks more easily. To prevent this, by default DNS
sends from a random ephemeral port. Configure your firewall to allow outgoing queries from a random UDP
source port. The range 1024
to 65535
is used by default.