prevent nosy queries

Kevin Darcy kcd at daimlerchrysler.com
Wed Nov 22 22:14:18 UTC 2000


Andy Frog wrote:

> I currently have many domains bound to one ip address.  My question is, how
> do I prevent nslookup from displaying every single host on that ip address?
> I need nslookup but don't want others to be able to query my dns server for
> everything about my network.

  Unless nslookup is using a non-BIND server (or a
*really*old* BIND server) that supports IQUERY, there isn't any way that it
can display every single host on a particular IP address, unless you've
actually added a corresponding PTR for every one of those names. Don't do
that.


- Kevin




More information about the bind-users mailing list