firewalling

HuMPie humpie at grunn.org
Thu Sep 2 16:43:29 UTC 2004


Only allow UPD traffic is enough, TCP traffic is only needed if you are
a master DNS server and need transferring zones to your slave.

-----Original Message-----
From: bind-users-bounce at isc.org [mailto:bind-users-bounce at isc.org] On
Behalf Of phn at icke-reklam.ipsec.nu
Sent: Wednesday, August 25, 2004 17:15
To: comp-protocols-dns-bind at isc.org
Subject: Re: firewalling

thedlw <thedlw at comcast.net> wrote:
> can someone point me to a website or whatever as to what ports i need
t=
o
> open on a firewall to make my cacheing dns server to work?  (it
doesn't=
 work
> if i don't make it a dmz)
> thedlw at comcast.net

Allow UDP and TCP from nameserver ( any port ) to any address port 53=20
on outside. Allow answers back ( remember state )



--=20
Peter H=E5kanson        =20
        IPSec  Sverige      ( At Gothenburg Riverside )
           Sorry about my e-mail address, but i'm trying to keep spam
out=
,
	   remove "icke-reklam" if you feel for mailing me. Thanx.



More information about the bind-users mailing list