Great Circle Associates Firewalls
(May 1993)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: DNS in Firewalled Environment
From: Tony Luck <aegl @ ossi . com>
Date: Thu, 20 May 1993 10:53:15 -0700
To: Firewalls @ GreatCircle . COM

R. Michael Dupont writes:
> By not registering a domain, the ROOT servers cannot resolve any unregistered
> HOST.DOMAIN.OF.MY.CHOICE because they do not know where the SOA resides.  You
> (as the Source-Of-Authority) do, and can provide proper resolution for hosts
> within your domain.
    ...
> Anybody know of hitches to this type of a setup?

At least one problem ... several of the anonymous ftp servers are already
set up to reject connections if they can't do a reverse lookup on the
address that your connection comes from (and some then convert the name
back to an address again to make sure that they match).  This kind of
autentication of connections is becoming more common as the number of bad
guys on the net goes up, resulting in a decrease in the overall level of
trust.

If you don't have a registered domain, then you can't access the services
that do this kind of checking.

-Tony Luck


Indexed By Date Previous: Re: DNS in Firewalled Environment
From: smb @ research . att . com
Next: Re: DNS in Firewalled Environment
From: Brent Chapman <brent @ GreatCircle . COM>
Indexed By Thread Previous: Re: DNS in Firewalled Environment
From: smb @ research . att . com
Next: Re: DNS in Firewalled Environment
From: Brent Chapman <brent @ GreatCircle . COM>

Google
 
Search Internet Search www.greatcircle.com