tor, 2002-06-06 kl. 16:36 skrev Arne Sagnes:
> DNS, specifically Bind, has options in the named.conf to limit zone
> transfers and recursive lookups. You can use the 'allow-transfer { IP;
> IP };' directive to restrict zone transfers.Yes, but this nothing to do with netfilter. Nor the purpose for which the name server is intended. E.g. I don't even want people querying my Compaq notebook DNS. It's a caching DNS and not meant for others. Nevertheless, because of the nasties on the Internet (see CERT Advisory CA-2002-15 Denial-of-Service Vulnerability in ISC BIND 9, Original release date: June 04, 2002), one *hell* of a lot of nasties are trying, at the moment (yes, thanks Oskar, for pointing out the use of logging). What they're actually trying, is to get to stop traffic to my Compaq. N�hnen�hnen�hne, nasties! I've got iptables and you can't get me. *That's* what Netfilter is all about. Tony Henne er "tickets.com" henne, Arne; du som sier at du "engang var nordmann"? Flyttet til Utlandet, er du? -- Tony Earnshaw e-post: [EMAIL PROTECTED] www: http://www.billy.demon.nl gpg public key: http://www.billy.demon.nl/tonni.armor Telefoon: (+31) (0)172 530428 Mobiel: (+31) (0)6 51153356 GPG Fingerprint = 3924 6BF8 A755 DE1A 4AD6 FA2B F7D7 6051 3BE7 B981 3BE7B981
signature.asc
Description: Dette er en digitalt signert meldingsdel
