On Wed, 2011-08-03 at 17:42 -0700, Tom Eastep wrote:
> On Aug 3, 2011, at 12:25 PM, Ed W wrote:
> 

> > 
> > This still leaves you the problem of what to do if a client isn't
> > configured to use the caching nameserver on the firewall... (DHCP might
> > help of course)
> 
> 
> If hosts behind the gateway are configuring their own name servers, there are 
> more basic problems with the installation than the multi-ISP issue.
> 

Nevertheless, I agree that REDIRECT rules for both udp and tcp port 53
would solve that problem. 

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: This is a digitally signed message part

------------------------------------------------------------------------------
BlackBerry® DevCon Americas, Oct. 18-20, San Francisco, CA
The must-attend event for mobile developers. Connect with experts. 
Get tools for creating Super Apps. See the latest technologies.
Sessions, hands-on labs, demos & much more. Register early & save!
http://p.sf.net/sfu/rim-blackberry-1
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to