Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 27 Jul 1998 00:16:38 -0700 (PDT)
From:      Jesse <j@lumiere.net>
To:        freebsd-security@FreeBSD.ORG
Subject:   ipfw rules to allow DNS activity
Message-ID:  <Pine.BSF.3.96.980727001106.118A-100000@leaf.lumiere.net>

next in thread | raw e-mail | index | archive | help

Hi,

I'm thinking of changing one of my boxes which is running bind (performing
primary secondary DNS functions) from
allow-anything-except-things-specifically-denied ipfw rules to
deny-everything-except-things-specifically-allowed rules (open vs closed?
hehe). Anyway, I was wondering what are the minimum rules necessary to
allow DNS queries/transfers from other servers to my server, and also to
allow queries from my server to other servers.

I tried a variety of rules from the rc.firewall file, but it's still
blocking some traffic, so there must be something I'm missing.

Thanks! :)

---
Jesse <j@lumiere.net>
http://www.lumiere.net/


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.3.96.980727001106.118A-100000>