Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 24 Jul 2001 11:47:38 -0400
From:      "alexus" <ml@db.nexgen.com>
To:        "Drew J. Weaver" <drew.weaver@thenap.com>, <freebsd-isp@freebsd.org>
Subject:   Re: Can someone do me a favor?
Message-ID:  <007a01c11457$f7385920$0d00a8c0@alexus>
References:  <B1A7D9973EBED3119ADD009027DC86492B0C3E@mailman.thenap.com>

next in thread | previous in thread | raw e-mail | index | archive | help
This is a multi-part message in MIME format.

------=_NextPart_000_0077_01C11436.6FDA46D0
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

Can someone do me a favor?alexus@~# host 206.222.1.2
2.1.222.206.IN-ADDR.ARPA domain name pointer dns2.ee.net
alexus@~# host 206.222.1.3
3.1.222.206.IN-ADDR.ARPA domain name pointer dns3.ee.net
alexus@~# host 209.51.192.194
194.192.51.209.IN-ADDR.ARPA domain name pointer =
ns1.netservice.columbus-nap.net
alexus@~# host 206.222.1.4  =20
4.1.222.206.IN-ADDR.ARPA domain name pointer dns4.ee.net
alexus@~# host 209.51.193.2
2.193.51.209.IN-ADDR.ARPA domain name pointer dns1.ee.net
alexus@~#=20

allow-query has nothin to do with trying to resolve it.. allow query =
only limit ips from using your ns

let's say if you only put your ip, you'll be the only one who can query =
your ns..=20

read how dns works..

  ----- Original Message -----=20
  From: Drew J. Weaver=20
  To: 'freebsd-isp@freebsd.org'=20
  Sent: Tuesday, July 24, 2001 9:48 AM
  Subject: Can someone do me a favor?


          try and resolve through any of these dns servers=20
  206.222.1.2, 206.222.1.3, 209.51.192.194, 206.222.1.4, 209.51.193.2=20

  I just implemented the allow-query command in my named.conf on all of =
these servers and much to my shygrin i dont think its actually limiting =
anything?

  It appears to still be wide open.=20

  -Drew=20








------=_NextPart_000_0077_01C11436.6FDA46D0
Content-Type: text/html;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD><TITLE>Can someone do me a favor?</TITLE>
<META http-equiv=3DContent-Type content=3D"text/html; =
charset=3Diso-8859-1">
<META content=3D"MSHTML 6.00.2499.0" name=3DGENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=3D#ffffff>
<DIV><FONT face=3D"Courier New" size=3D2>alexus@~# host=20
206.222.1.2<BR>2.1.222.206.IN-ADDR.ARPA domain name pointer=20
dns2.ee.net<BR>alexus@~# host 206.222.1.3<BR>3.1.222.206.IN-ADDR.ARPA =
domain=20
name pointer dns3.ee.net<BR>alexus@~# host=20
209.51.192.194<BR>194.192.51.209.IN-ADDR.ARPA domain name pointer=20
ns1.netservice.columbus-nap.net<BR>alexus@~# host =
206.222.1.4&nbsp;&nbsp;=20
<BR>4.1.222.206.IN-ADDR.ARPA domain name pointer =
dns4.ee.net<BR>alexus@~# host=20
209.51.193.2<BR>2.193.51.209.IN-ADDR.ARPA domain name pointer=20
dns1.ee.net<BR>alexus@~# </FONT></DIV>
<DIV><FONT face=3D"Courier New" size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3D"Courier New" size=3D2>allow-query has nothin to do =
with trying to=20
resolve it.. allow query only limit ips from using your ns</FONT></DIV>
<DIV><FONT face=3D"Courier New" size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3D"Courier New" size=3D2>let's say if you only put your =
ip, you'll=20
be the only one who can query your ns.. </FONT></DIV>
<DIV><FONT face=3D"Courier New" size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3D"Courier New" size=3D2>read how dns =
works..</FONT></DIV>
<DIV><FONT face=3D"Courier New" size=3D2></FONT>&nbsp;</DIV>
<BLOCKQUOTE=20
style=3D"PADDING-RIGHT: 0px; PADDING-LEFT: 5px; MARGIN-LEFT: 5px; =
BORDER-LEFT: #000000 2px solid; MARGIN-RIGHT: 0px">
  <DIV style=3D"FONT: 10pt arial">----- Original Message ----- </DIV>
  <DIV=20
  style=3D"BACKGROUND: #e4e4e4; FONT: 10pt arial; font-color: =
black"><B>From:</B>=20
  <A title=3Ddrew.weaver@thenap.com =
href=3D"mailto:drew.weaver@thenap.com">Drew J.=20
  Weaver</A> </DIV>
  <DIV style=3D"FONT: 10pt arial"><B>To:</B> <A =
title=3Dfreebsd-isp@freebsd.org=20
  =
href=3D"mailto:'freebsd-isp@freebsd.org'">'freebsd-isp@freebsd.org'</A> =
</DIV>
  <DIV style=3D"FONT: 10pt arial"><B>Sent:</B> Tuesday, July 24, 2001 =
9:48=20
AM</DIV>
  <DIV style=3D"FONT: 10pt arial"><B>Subject:</B> Can someone do me a =
favor?</DIV>
  <DIV><BR></DIV>
  <P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT size=3D2>try and =
resolve=20
  through any of these dns servers</FONT> <BR><FONT =
size=3D2>206.222.1.2,=20
  206.222.1.3, 209.51.192.194, 206.222.1.4, 209.51.193.2</FONT> </P>
  <P><FONT size=3D2>I just implemented the allow-query command in my =
named.conf on=20
  all of these servers and much to my shygrin i dont think its actually =
limiting=20
  anything?</FONT></P>
  <P><FONT size=3D2>It appears to still be wide open.</FONT> </P>
  <P><FONT size=3D2>-Drew</FONT> =
</P><BR><BR><BR><BR><BR></BLOCKQUOTE></BODY></HTML>

------=_NextPart_000_0077_01C11436.6FDA46D0--


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-isp" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?007a01c11457$f7385920$0d00a8c0>