Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Enable DNSSEC to protect from DNS query interception attacks #560

Open
lorenyu opened this issue Feb 22, 2024 · 0 comments
Open

Enable DNSSEC to protect from DNS query interception attacks #560

lorenyu opened this issue Feb 22, 2024 · 0 comments
Labels
domain: security Security or compliance issue scope: network Network layer / component

Comments

@lorenyu
Copy link
Contributor

lorenyu commented Feb 22, 2024

checkov found this issue: https://docs.prismacloud.io/en/enterprise-edition/policy-reference/aws-policies/aws-networking-policies/bc-aws-2-38

not trivial to deal with since it involves creating a key which has to be in us-east-1, then configuring dnssec, and establishing a chain of trust by adding a DS record to the domain name registrar

References

@lorenyu lorenyu added domain: security Security or compliance issue scope: network Network layer / component labels Feb 22, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
domain: security Security or compliance issue scope: network Network layer / component
Projects
None yet
Development

No branches or pull requests

1 participant