Forwarding Name Server Configuration
The BIND DNS configuration provides the following functionality:
- The name server is not a 'master' or 'slave' for any domain
- provides 'caching' services for all domains
- forwards all queries to a remote DNS from all local resolvers (Global forwarding)
- limits query services to local resolvers only - this statement is designed to limit forwarding which both negates the effect of the forwarding server by increasing traffic loads and passes the bogus requests to the remote DNS potentially causing a DoS/DDos attack.
No comments:
Post a Comment