DNS.Name.Overly.Long

description-logoDescription

This signature indicates a DNS protocol anomaly. It indicates detection of a Domain Name Service (DNS) message with an oversized full domain name or record length larger than the whole data length.
DNS is a system that translates between human-readable host or domain names (e.g. www.fortinet.com) and machine-understandable Internet Protocol addresses.

affected-products-logoAffected Products

Any unprotected DNS server may be vulnerable.

Impact logoImpact

This is an anomaly, which may indicate potential attack attempts.

recomended-action-logoRecommended Actions

This indicates detection of traffic that does not comply with the protocol standard. Monitor the traffic from that network for any suspicious activity.

Coverage

IPS (Regular DB)
IPS (Extended DB)

References

1