SCIENTIFIC-LINUX-USERS Archives

February 2013

SCIENTIFIC-LINUX-USERS@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
curriegrad2004 <[log in to unmask]>
Reply To:
curriegrad2004 <[log in to unmask]>
Date:
Wed, 20 Feb 2013 23:28:22 -0800
Content-Type:
text/plain
Parts/Attachments:
text/plain (25 lines)
From a security perspective, I would seriously not even bother
querying anybody's DNS servers but rather have BIND to become a full
recursive DNS server using only the root hints provided by IANA.

Unless frontier is hijacking DNS (port 53) traffic, I'd strongly
recommend using the method mentioned above.

On Wed, Feb 20, 2013 at 10:16 PM, Todd And Margo Chester
<[log in to unmask]> wrote:
> Hi All,
>
> I can not get frontier's DNS servers to resolve
> releases.mozilla.org.  So, in my /etc/named.conf
> I commented out frontier's DNS servers and substituted
> Google's (8.8.8.8) and Open DNS' (208.67.222.222).
>
>         # forwarders { 216.67.192.3; 74.40.37.242; };
>         # forwarders { 74.40.74.40; 74.40.74.41; };
>         forwarders { 8.8.8.8; 208.67.222.222; };
>
> Am I making a security mistake here?
>
> Many thanks,
> -T

ATOM RSS1 RSS2