Securing a BIND server with a heavy hand?

Michael Shiels mas_software at bigfoot.com
Mon Dec 6 00:35:24 UTC 1999


I have seen various approachs taken, and was wondering if anyone had any
comments.

- CHROOTed for sure, to ensure that even in event of failure, hopefully
not much can be done.

- Multiple servers, one to service internal queries, and one to service
external queries

- Single server, using the new ACL restrictions to ensure external
queries can not recurse, but internal ones can?

Any thoughts on Multiple vs Single with ACLs?

--
Michael Shiels
MaS Network Software and Consulting
2093 Summerwood Court
Mississauga, ON   +1 (905) 8239455 voice
Canada   L5K 2S8  +1 (905) 8236361 fax



-- Binary/unsupported file stripped by Listar --
-- Type: text/x-vcard
-- File: mas_software.vcf
-- Desc: Card for Michael Shiels




More information about the bind-users mailing list