Preventing ls

Kevin Darcy kcd at daimlerchrysler.com
Fri Jun 14 22:57:48 UTC 2002


Am=E2ndio Antunes wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> Hello everybody!!!
>
> Can someone give me a hint on how to prevent clients from getting
> results with nslookup ls command on my domains? Should I use the view
> statement?

nslookup's "ls" command uses the zone-transfer mechanism, so you can
restrict it via allow-transfer.


-Kevin




More information about the bind-users mailing list