[Fedora] Re: bind lame servers

Ashley M. Kirchner ashley at pcraft.com
Fri May 25 02:31:55 UTC 2007


Jason L Tibbitts III wrote:
> You can add 
>   category lame-servers { null; };
> to the logging section of your named.conf file to shut this up.
>   
    I didn't do this on any of my servers because I want to see all the 
DoS attacks, so I can block them when needed.

> So something is asking your name server to resolve a lot of
> addresses.  If this is surprising to you, I'd suggest trying to figure
> out what it might be.
>   
    Yes, it's called Asia.  Several dozen IPs were querying my DNS  
non-stop.  They're all firewalled now...buh-bye!

    Thanks!

-- 
H | It's not a bug - it's an undocumented feature.
  +--------------------------------------------------------------------
  Ashley M. Kirchner <mailto:ashley at pcraft.com>   .   303.442.6410 x130
  IT Director / SysAdmin / Websmith             .     800.441.3873 x130
  Photo Craft Imaging                       .     3550 Arapahoe Ave. #6
  http://www.pcraft.com ..... .  .    .       Boulder, CO 80303, U.S.A. 





More information about the users mailing list