OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Vincent Danen (vdanenmandrakesoft.com)
Date: Thu Mar 21 2002 - 11:40:40 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Wed Mar 20, 2002 at 10:50:30PM -0800, Todd Lyons wrote:

    > >I think it's a PITA to setup the 10.in-addr.arpa... I'm running
    > >djbdns-extcache on the LDAP server, and to do that I have to run
    > >tinydns with that zone. That's just a PITA (not to mention stupid).
    >
    > That's what the other guy in the qmail list was saying when I told him
    > to setup reverse dns for qmail to work without the 30 second pause.
    > In my case, I always throw together a quick authoritative nameserver on
    > an internal LAN, so all the forward lookups are already done. To add
    > reverse dns, one only needs to add to /var/djbdns/tinydns/root/data:
    >
    > .120.168.192.in-addr.arpa:192.168.120.4:a:259200
    >
    > And then:
    > echo 192.168.120.4 > /var/djbdns/dnscache/root/servers/120.168.192.in-addr.arpa
    >
    > Once you run make for the first step and restart the cacheing server for
    > the second step, full reverse dns will now work. Modify for your IP
    > addresses.

    Hmmm... maybe I'll play with this then. Will have to setup an IP
    alias on that machine because tinydns and dnscache don't play too well
    together otherwise.

    > >Aaargh! One of these days... for now, containing this stuff in
    > >/etc/hosts is good enough.
    >
    > And this is a good configuration for a small network. No need to overly
    > complicate things until you start talking 5+ machines.

    Well, I'm talking about 8 (not including the vmware workstations), so
    maybe this would be a good idea anyways.

    -- 
    MandrakeSoft Security; http://www.mandrakesecure.net/
    "lynx -source http://www.freezer-burn.org/bios/vdanen.gpg | gpg --import"
    1024D/FE6F2AFD   88D8 0D23 8D4B 3407 5BD7  66F9 2043 D0E5 FE6F 2AFD
    

    Current Linux kernel 2.4.8-34.1mdk uptime: 11 hours 46 minutes.

    -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.6 (GNU/Linux) Comment: For info see http://www.gnupg.org

    iD8DBQE8mhsXIEPQ5f5vKv0RAm3wAJ9qgNACzAnLJS4Y7iW4VVlSktrDEgCgnPv4 RzxadQS3uHRcFcX9wbVLDzw= =EyB1 -----END PGP SIGNATURE-----