Summary : tcp_wrappers for named

From: Eddie Tsang <eddiet_at_hk.super.net>
Date: Tue, 08 Apr 1997 11:58:07 -0800

Hi,

Thank you for the help from :

Carlos A M dos Santos
John K. Peterson
Ollivier Robert

It seems that tcp wrappers does not work with named to restrict access
to a name server. Different methods were suggested :

Ollivier ROBERT :
> The vast majority of DNS queries are UDP so you can't use TCP wrapper.
> If you want to hide your internal DNS use a split DNS as described in
> Cheswick & Bellovin book on Internet Firewalls.

Carlos A M dos Santos :
> Another way to restrict name server access is to put the server behind
> a firewall or use a packet filter on the router to restrict DNS
> incomming access to your network. You can also set up a packet filter
> in your server.

John K. Peterson :
> The latest version of named on DU supports secure zones. It allows
> you to restrict access to the nameserver to networks/hosts that you
> specify.
-- 
Regards,
Eddie Tsang
Computer Centre
Hong Kong Technical College (Chai Wan)
**************************************
Computer is like Church,
Many people attend but few understand.
**************************************
Received on Tue Apr 08 1997 - 06:07:57 NZST

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:36 NZDT