SPAMMER/SECURITY: Can we block unconfigured zones in bind 8?

Len Conrad LConrad at Go2France.com
Fri May 18 20:54:21 UTC 2001



>recursive answers while making it more difficult for outsiders to
>do the same?

allow-recursion {ip_list};

and bind9 introduces the view facility

>         I suspected that turning off recursion on our master and
>slave dns's would absolutely kill _EVERYTHING_ around here

allow-recursion only for your subnets. off your subnets, recursion will be 
denied.

Len


http://MenAndMice.com/DNS-training
http://BIND8NT.MEIway.com : ISC BIND 8.2.3 "NT3" for NT4 & W2K
http://IMGate.MEIway.com  : Build free, hi-perf, anti-abuse mail gateways



More information about the bind-users mailing list