[ILUG] Weird DNS issue

James Raftery james-ilug at domainregistry.ie
Thu Jun 22 14:47:09 IST 2000


On Thu, Jun 22, 2000 at 02:26:05PM +0100, Kenn Humborg wrote:
> # ipfwadm -I -a deny -P udp -S a.gtld-servers.net. 53
> # ipfwadm -I -a deny -P tcp -S a.gtld-servers.net. 53

I'd actually use -D to stop my nameservers even getting a query to it.
As an aside, the above mightn't work as responses won't necessarily have
a source port of 53. (Default BIND behaviour is random unpriv. port).

> Argh.

Quite.

Email dnsadm at netsol.com and make a fuss. I have :)

james
-- 
James Raftery (JBR54)  -  Programmer Hostmaster  -  IE TLD Hostmaster
   IE Domain Registry  -  www.domainregistry.ie  -  (+353 1) 706 2375
  "Managing 4000 customer domains with BIND has been a lot like
   herding cats." - Mike Batchelor, on dns at list.cr.yp.to.




More information about the ILUG mailing list