Query Refused

Michael Voight mvoight at cisco.com
Mon Jun 14 20:33:33 UTC 1999


Sorry, in IOS  (Cisco routers), you can do this with CBAC (Context Based
Access Control). And, our other firewall (PIX) allows incoming packets
if they are in response to a request. 

Michael

Cricket Liu wrote:
> 
> Michael Voight <mvoight at cisco.com> wrote in message
> news:<37654C12.EF06E8ED at cisco.com>...
> > 1. Block incoming port 53 udp and tcp requests at the router or
> > firewall.
> 
> This will also cut off responses if your name server is running BIND 4.
> 
> cricket
> 
> Acme Byte & Wire
> cricket at acmebw.com
> www.acmebw.com
> 
> Attend our next DNS and BIND class!  See
> www.acmebw.com/training.htm for the
> schedule and to register for upcoming
> classes.



More information about the bind-users mailing list