Great Circle Associates Firewalls
(February 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Split DNS & MX
From: nreadwin @ london . micrognosis . com (Neil Readwin)
Date: Wed, 2 Feb 1994 20:16:21 +0000 (GMT)
To: lazear @ dockside . mitre . org
Cc: firewalls @ GreatCircle . COM
In-reply-to: <9402021908 . AA22699 @ dockside . mitre . org . mitre . org> from "lazear @ dockside . mitre . org" at Feb 2, 94 02:08:32 pm

lazear @
 dockside .
 mitre .
 org writes:
> The rub comes when a local host tries to send mail to an external host.

We solved this by having all the local clients route *all* mail to the
internal mailhost (ruleset 0 contains only one line). The internal
mailhost knows how to deliver mail to *.london.micrognosis.com (plus a
couple of other things) and punts everything else to the firewall.
Basically, nothing internally uses DNS to route mail - it's all wired
into the sendmail.cf files on the very few (2 or 3 ) machines that
route mail. Our internal mail network is simple enough for this to
work and be supportable. Your mileage may vary. Neil.
-- 
 Phone: +44 71 815 5283  E-mail: nreadwin @
 micrognosis .
 co .
 uk
 Anything is a cause for sorrow that my mind or body has made


References:
Indexed By Date Previous: Split DNS & MX
From: lazear @ dockside . mitre . org
Next: Re: Split DNS & MX
From: grs @ claircom . com (Gregg Siegfried)
Indexed By Thread Previous: Split DNS & MX
From: lazear @ dockside . mitre . org
Next: Re: Split DNS & MX
From: woods @ ncar . UCAR . EDU (Greg Woods)

Google
 
Search Internet Search www.greatcircle.com