Need suggestion about firewall and BIND 8.3.3

David Botham dns at botham.net
Tue Jul 16 13:22:22 UTC 2002




> -----Original Message-----
> From: Michael AIG [mailto:mike_aig at hotmail.com]
> Sent: Monday, July 15, 2002 9:52 PM
> To: dns at botham.net; bind-users at isc.org
> Subject: RE: Need suggestion about firewall and BIND 8.3.3
> 
> Thanks for the info!
> How about the zone transfer from primary to secondary?

The zone transfers will take place over TCP port 53.

One thing I forgot, remember to look at the query-source option to set
the query source port to 53.



> Thanks again in advance!
> 
> Regards,
> Mike
> 
> >From: "David Botham" <dns at botham.net>
> >To: "'Michael AIG'" <mike_aig at hotmail.com>, <bind-users at isc.org>
> >Subject: RE: Need suggestion about firewall and BIND 8.3.3
> >Date: Mon, 15 Jul 2002 09:41:48 -0400
> >
> >Sorry,  mis-read that last post.
> >
> >DNS:  UDP=53, TCP=53
> >SSH:	TCP=22
> >FTP:  TCP=21 (control) and 20 (data)
> >
> >FTP may be a little tricky to handle with a packet filter.  A more
> >secure option would be to tunnel FTP through SSH.  Then, you would
not
> >have to worry about filtering FTP, only SSH and DNS.
> 
> 
> _________________________________________________________________
> Send and receive Hotmail on your mobile device: http://mobile.msn.com



More information about the bind-users mailing list