[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [cobalt-users] DNS Zone transfer restrictions
- Subject: Re: [cobalt-users] DNS Zone transfer restrictions
- From: Gerald Waugh <gwaugh@xxxxxxxxxxxxxxxxxxxxxxx>
- Date: Sat May 25 14:58:08 2002
- Organization: Front Street Networks LLC
- List-id: Mailing list for users to share thoughts on Sun Cobalt products. <cobalt-users.list.cobalt.com>
On Saturday 25 May 2002 12:00 pm, cobalt@xxxxxxxxxxxxx wrote:
> Hi all,
>
> I have restricted DNS zone transfers to a few known IP's.
> But I got this in the log files:
>
> May 25 15:15:49 ns named[9032]: denied AXFR from [193.0.0.63].54041 for
> "mydomain.co.uk" (acl)
>
> Now 193.0.0.63 (hostcount.ripe.net) is part of RIPE (??).
> My question is do I need to allow unrestricted access to this IP or others
> to allow Root servers etc to function correctly.
I don't think so, I run my nameservers with restricted access (only slaves
can transfer) and never had a problem.
If your dns is working, I would ignore it.
--
Gerald Waugh
http://www.frontstreetnetworks.com :: Phone. [011] 203.785.0699
Front Street Networks LLC | SOHO Networks, Web Site Hosting, & Cobalt
Consulting
229 Front Street, Ste. #C, New Haven, CT, 06513-3203 United States:wq