This is a discussion on Re: Security Question within the Bind Users forums, part of the DNS and Related Forums category; In article <cdmj90$25no$1@sf1.isc.org>, tnaves@linkwest.net wrote: > I was reading some stuff ...
|
|||||||
| FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
|
|||
|
In article <cdmj90$25no$1@sf1.isc.org>, tnaves@linkwest.net wrote:
> I was reading some stuff by Microsoft on split dns. They insist that a > dns server on a private network should never use a root hints file but > should always forward to the dns server at you ISP. > > What do you all think about this? Is it safe to use root hints from a > private network behind a firewall or should you always forward? As long as your local DNS server is running a version of BIND that's resistent to cache poisoning attacks, you should be fine using root hints. -- Barry Margolin, barmar@alum.mit.edu Arlington, MA *** PLEASE post questions in newsgroups, not directly to me *** |