DNS uses UDP. TCP is normally only used for zone transfers. There is significant philosophical discussion about this issue every time it is raised.. apparently some version(s) of AIX always use TCP for DNS requests. But it works for about 99.999% of all requests.
On Fri, Feb 22, 2002 at 01:10:01PM -0500, Jason Pappas wrote: > How can you run an authoritive DNS server if you don't let DNS requests > through? > > > - DENY TCP port 53. Kills bind sploits dead. -- Unplug and get connected: http://www.seattlewireless.net/
