Help - bind 9.3.2 security log

Mark Andrews Mark_Andrews at isc.org
Mon Mar 6 04:10:15 UTC 2006


	Don't send to bind-announce at isc.org.

	Don't sent to both bind-users at isc.org and bind-bugs at isc.org.

> hi all
> 
> i  have upgraded my cache only dns server to bind 9.3.2 and i found out somet
> hing in the log
> 
> security: info: client 127.0.0.1#48540: query (cache) 'furrylogic.net/MX/IN' 
> denied
> 
> any problem ? should i allow 127.0.0.1 to query ?
> 
> i only allow query from our networks and firewall only allow our networks to 
> access the port 53 of the cache only dns server

	I'm pretty sure 127/8 is one of your networks:-)

	127.0.0.1 is normally the address assigned to the IPv4 loopback
	interface.  If you have 127.0.0.1 in your /etc/resolv.conf then
	you should allow recursive queries from 127.0.0.1.
 
> thx very much
> 
> 
--
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: Mark_Andrews at isc.org



More information about the bind-users mailing list