[dns-operations] DNS deluge for x.p.ctrc.cc

Gadi Evron ge at linuxbox.org
Sun Feb 26 23:15:09 UTC 2006


william(at)elan.net wrote:
> And BTW - what is correct way to deal with queries at the dns server side?
> Lets assume we want appropriate security applied and have dns server only 
> answer regarding netzones it serves or on behalf of clients on pre-set 
> (local) network. If query comes in for non-served zone from remote net, 
> should dns server simply ignore the query and not send any answer?

I believe it was Valdis on NANOG a few mounths back who said it best. 
The server which answers your users/clients should not be the same one 
facing the world.
:)

	Gadi.



More information about the dns-operations mailing list