>The module DNSCONF does not appear to have a way to set the allow-transfer 
>feature in the /etc/named.conf file.  Not having this feature is a security 
>issue, because without it, a hacker can use the zone transfer to gather 
>information for an attack.

I agree... having had my servers scanned for weaknesses several times now.
In almost all cases the malicious users forced a dns zone transfer to
gather information on my subnet.  I strongly support the addition of a
linuxconf feature to restrict dns zone transfers.  Put this on my wish list.

Cheers... Dino


-----
   Dino Nardini, BSc, Certified Web Master 
   mailto:[EMAIL PROTECTED]

   Explore Nova Scotia - "Canada's Ocean Playground"
   http://www.explorenovascotia.com


---
You are currently subscribed to linuxconf as: [[email protected]]
To unsubscribe, forward this message to [EMAIL PROTECTED]

Reply via email to