On 5/28/2015 5:59 PM, PGNd wrote:
>
> On Thu, May 28, 2015, at 03:32 PM, Tom Eastep wrote:
>> On the remote system, try this masq entry:
>> vpn1:10.0.2.53    10.254.254.1    10.0.1.53        udp,tcp    53
> Aha, further down in the inbox, and now "independently verified".
>
>
Depending on which DNS server you are using, there is another way to
solve this that doesn't involve Shorewall at all. In bind9, you can
specify the *transfer-source* option which causes the given address to
be used as the source during zone transfers.

-Tom

-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________


Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to