Query Denied bind 9.4

Alan Clegg Alan_Clegg at isc.org
Mon Nov 26 18:35:00 UTC 2007


Dean Clapper wrote:
> I made the changes in /etc/named.conf.
I meant what machine (IP address, name, etc), not what file.   ;)

> I created an acl for internal IPs and changed
> 
> allow-query { any; };
> to
> allow-query {internals;};
> 
> Since that name is my email server, I have to let the outside world query 
> only that name?  I don't want everyone to query everything, just the single 
> name right?

Turning off queries on an authoritative nameserver is not what you are
wanting to do...

I'm guessing that you are wanting to turn off recursion, not turn off
queries completely.

AlanC




More information about the bind-users mailing list