Restricting TCP / 53 on the firewall level

Barry Margolin barmar at genuity.net
Mon Mar 25 21:45:14 UTC 2002


In article <a7o458$lkt at pub3.rc.vix.com>,  <phn at icke-reklam.ipsec.nu> wrote:
>
>Barry Margolin <barmar at genuity.net> wrote:
>> I assume he's only talking about blocking *incoming* connections, not
>> connections that his nameserver initiates.  In that case, he controls the
>> size of the answers.
>
>Well, She ( hi kristin ! ) did not limit to one direction only. And sometimes
>a nameservers will ask queries too.

I based my assumption on a general understanding about how most places
configure firewalls.

-- 
Barry Margolin, barmar at genuity.net
Genuity, Woburn, MA
*** DON'T SEND TECHNICAL QUESTIONS DIRECTLY TO ME, post them to newsgroups.
Please DON'T copy followups to me -- I'll assume it wasn't posted to the group.


More information about the bind-users mailing list