denied NS/IN

Scott Haneda talklists at newgeo.com
Wed Jan 21 00:12:15 UTC 2009


On Jan 20, 2009, at 3:52 PM, Frank Bulk wrote:

> That's being discussed on NANOG, here's one thread:
> http://markmail.org/message/ydiqnztzmz5qmusf
>
> See here for more details in blocking them:
> http://www.cymru.com/Documents/secure-bind-template.html
> specifically:
>
>    blackhole {
>        // Deny anything from the bogon networks as
>        // detailed in the "bogon" ACL.
>        bogon;
>    };
>
> Note that isprime is suggesting an ACL on your firewall or router.


Thank you, curious, why does it say block all but 53, isnt that  
exactly what we want to block?
--
Scott




More information about the bind-users mailing list