[Fedora] Re: bind lame servers

Jason L Tibbitts III tibbs at math.uh.edu
Fri May 25 03:24:38 UTC 2007


>>>>> "AMK" == Ashley M Kirchner <ashley at pcraft.com> writes:

AMK> Yes, it's called Asia.  Several dozen IPs were querying my DNS
AMK> non-stop.

You should not allow recursive queries from outside of your network.

I do this by having an internal view with a "match-clients" set to my
internal network, and then later a default view with
  match-clients { any; };
  recursion no;
although I suspect this is not the simplest way to accomplish this
because it necessitates duplicating all of the zone declarations that
are visible in both views.

 - J<




More information about the fedora-list mailing list