tor, 2002-06-06 kl. 16:36 skrev Arne Sagnes:

>   DNS, specifically Bind, has options in the named.conf to limit zone
> transfers and recursive lookups.  You can use the 'allow-transfer { IP;
> IP };' directive to restrict zone transfers.

Yes, but this nothing to do with netfilter. Nor the purpose for which
the name server is intended.

E.g. I don't even want people querying my Compaq notebook DNS. It's a
caching DNS and not meant for others.

Nevertheless, because of the nasties on the Internet (see CERT Advisory
CA-2002-15 Denial-of-Service Vulnerability in ISC BIND 9, Original
release date: June 04, 2002), one *hell* of a lot of nasties are trying,
at the moment (yes, thanks Oskar, for pointing out the use of logging).

What they're actually trying, is to get to stop traffic to my Compaq.

N�hnen�hnen�hne, nasties! I've got iptables and you can't get me.

*That's* what Netfilter is all about.

Tony

Henne er "tickets.com" henne, Arne; du som sier at du "engang var
nordmann"? Flyttet til Utlandet, er du?

-- 

Tony Earnshaw

e-post:         [EMAIL PROTECTED]
www:            http://www.billy.demon.nl
gpg public key: http://www.billy.demon.nl/tonni.armor

Telefoon:       (+31) (0)172 530428
Mobiel:         (+31) (0)6 51153356

GPG Fingerprint = 3924 6BF8 A755 DE1A 4AD6 FA2B F7D7 6051 3BE7 B981
3BE7B981


Attachment: signature.asc
Description: Dette er en digitalt signert meldingsdel

Reply via email to