Preventing ls

phn at icke-reklam.ipsec.nu phn at icke-reklam.ipsec.nu
Sat Jun 15 08:04:01 UTC 2002


phn at icke-reklam.ipsec.nu wrote:

> Amândio Antunes <amandio at ccom.uminho.pt> wrote:

>> -----BEGIN PGP SIGNED MESSAGE-----
>> Hash: SHA1

>> Hello everybody!!!

>> Can someone give me a hint on how to prevent clients from getting
>> results with nslookup ls command on my domains? Should I use the view
>> statement?

> block zonetransfers using the "allow-xfer" <only the slaveservers>
> statement.

Sorry, the correct syntax in named.conf is :

options {
 	various options 

	allow-transfer { address_match_list };
};
See your manual for your version of bind.



>> TIA

>> amândio

>> -----BEGIN PGP SIGNATURE-----
>> Version: PGPfreeware 7.0.3 for non-commercial use <http://www.pgp.com>

>> iQA/AwUBPQoJEpI+qIkf+JcQEQKhegCcDalqdrJjZNEzIh9isg+ZF/7sMJAAoKjb
>> DcKPlFdsT6RfBlw+pQscqNgn
>> =J2kB
>> -----END PGP SIGNATURE-----





> -- 
> Peter Håkanson         
>         IPSec  Sverige      ( At Gothenburg Riverside )
>            Sorry about my e-mail address, but i'm trying to keep spam out,
> 	   remove "icke-reklam" if you feel for mailing me. Thanx.


-- 
Peter Håkanson         
        IPSec  Sverige      ( At Gothenburg Riverside )
           Sorry about my e-mail address, but i'm trying to keep spam out,
	   remove "icke-reklam" if you feel for mailing me. Thanx.


More information about the bind-users mailing list