Re: named on lenny

On Sun, 08 Mar 2009, Leonardo Boselli wrote:
> After udate to lenny two DNS stopped workin, better, they bagan to have a
> behaviour  "a la SMTP" .
> hosts are in a.b.c.0/24 .
> if a query arrive from an host in their localnet all ok, otherwise if the
> querying machine is outside their localnet[s] the they supply the address
> only if the supplied address in in a zone for which they are
> official primary or secondary DNS.
> otherwise no lich and in the log i find:
> Mar  7 23:37:25 mydnsserver named[2248]: client 
>      151.16.***.***#34363: query
>      (cache) 'www.google.it/A/IN' denied
> i copied etch configuration files ... did i make some error ?
> they have to supply dns service to everyone.

That will make you a DoS amplification point, and yet another problem for
the Internet at large.  Do not do it.

