Open DNS resolver problem
I noticed on a Zywall 110 many sessions on port 53 from outside, i think it is a DDOS attack, how is this possible? I am not running a DNS from the Wan connection I hope? I checked it with this link: https://www.openresolver.nl/
Where can I make changes on the zywall to make sure DNS from outside is not accessible? In the past this issue was also on the old DSL modems: https://support.aa.net.uk/Stopping_Open_DNS_-_ZyXEL_P660R-D1
Where can I make changes on the zywall to make sure DNS from outside is not accessible? In the past this issue was also on the old DSL modems: https://support.aa.net.uk/Stopping_Open_DNS_-_ZyXEL_P660R-D1
0
Accepted Solution
-
@Fender
In default, the DNS service should be denied from outside by firewall.
or can you go to security policy and configure Wan to Zywall, DNS, Deny.
You can go to Monitor>Log>Press Show Filter>Select the DNS on Service field>Press Search to see if there is any log and action related with DNS service
Charlie5
All Replies
-
Unless you allow from WAN to Zywall then port 53 is not allowed from the out side.0
-
@Fender
In default, the DNS service should be denied from outside by firewall.
or can you go to security policy and configure Wan to Zywall, DNS, Deny.
You can go to Monitor>Log>Press Show Filter>Select the DNS on Service field>Press Search to see if there is any log and action related with DNS service
Charlie5 -
Well ofcourse, such rule I would never make, but how it is still showing as an open resolver?0
-
@Zyxel_Charlie
I made the rule you suggested and it is blocking now and don't get the openresolver error anymore!
Very strange that the Zywall is not blocking it by default in this matter!
There is only one rule from Wan to Zywall, and that is my own fixed wan-ip address to the Zywall in thic case to have full access from outside. All the other (and default Wan_to_Device) rules I always delete because in don't need the VPN stuff.
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 144 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 237 USG FLEX H Series
- 267 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.3K Consumer Product
- 247 Service & License
- 384 News and Release
- 83 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight