acl misunderstanding?

This is a discussion on acl misunderstanding? within the Bind Users forums, part of the DNS and Related Forums category; Hi, I have a machine which serves as dns behind a firewall. All traffic to udp port 53 is allowed, ...


Go Back   Usenet Forums > DNS and Related Forums > Bind Users

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 08-04-2004
Mipam
 
Posts: n/a
Default acl misunderstanding?

Hi,

I have a machine which serves as dns behind a firewall.
All traffic to udp port 53 is allowed, because it serves as prim dns for a
few domains. However, i have no intension to serve as dns for the whole
world. So i did this:

acl "mynet" { 82.201.109.0/24; 127.0.0.1; };

zone "." { type hint; file "root.hint"; allow-query { "mynet"; }; };

The other zones must be resolvable for the whole internet to this machine,
but none other, so therefore i tried to restrict the hint zone by this.
However, this doenst work, nothing works anymore I get:

sysquery: nlookup error on ?
sysquery: nlookup error on ?

and in the response to any internal client ServFail
What am i doing wrong and how to accomplish the thing i wish for?
Bye,

Mipam.

Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 02:46 PM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0