Close. I mean a properly-configured instance of squid, or a SOCKS proxy, or whatever other non-DNS, application level proxy you want to provide. Just configure your kiosks to use them. Then the kiosks themselves don't need DNS resolution at all.
Chris Buxton BlueCat Networks On 5/12/10, Brian Candler <b.cand...@pobox.com> wrote: >> Or else set up secure proxies and disallow all DNS resolution (an >> empty root zone). > > I'm not sure what you mean by "secure proxies". Do you mean some non-BIND > software capable of forwarding and filtering DNS queries/responses? If so, > do you have anything particular in mind? > > Thanks, > > Brian. > -- Sent from my mobile device _______________________________________________ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users