The module DNSCONF does not appear to have a way to set the allow-transfer 
feature in the /etc/named.conf file.  Not having this feature is a security 
issue, because without it, a hacker can use the zone transfer to gather 
information for an attack.

If the feature is manually added to the /etc/named.conf file, zone 
transfers can be restricted.  However, the next time you use linuxconf to 
change or even view your server dns setup, the module will choke on the 
manually added allow-transfer directive, and will clear the dns definitions 
to a simple local host configuration if you let it.

If I am wrong about this let me know.  Otherwise it should be given some 
priority because of the security issue.  PLEASE FIX THIS>

Fred Herman

---
You are currently subscribed to linuxconf as: [[email protected]]
To unsubscribe, forward this message to [EMAIL PROTECTED]

Reply via email to