ACL for Forwarders

Barry Margolin barmar at alum.mit.edu
Sat Aug 2 03:47:03 UTC 2008


In article <g6vfd0$jvi$1 at sf1.isc.org>,
 Linux Addict <linuxaddict7 at gmail.com> wrote:

> Hi, Does the fordwarder option wont take ACLs? master is the ACL here.
> 
> /etc/named.conf:30: expected IP address near 'masters.
> 
> ~LA

The general rule is that ACLs may only be used for matching RECEIVED 
packets, and may NOT be used when specifying where to SEND packets.  
ACLs allow you to specify CIDR blocks, which can be thought of as 
wildcards, and it doesn't make sense to use these in master or 
forwarders clauses.

-- 
Barry Margolin, barmar at alum.mit.edu
Arlington, MA
*** PLEASE don't copy me on replies, I'll read them in the group ***


More information about the bind-users mailing list