Re: pix firewall and mail server
From: blitzkrieg (blitzkrieg@sitoverde.com)Date: 12/05/01
- Previous message: Tom Geldner: "RE: Loading the ZoneAlarm firewall early"
- In reply to: Mike V: "Re: pix firewall and mail server"
- Next in thread: Rantcla@aol.com: "Re: pix firewall and mail server"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Wed, 5 Dec 2001 20:29:36 +0100 From: blitzkrieg <blitzkrieg@sitoverde.com> To: security-basics@securityfocus.com
On Tue, Dec 04, 2001 at 11:42:15AM -0700, Mike V wrote:
> I was under the impression that 53/tcp was for zone xfers, and 53/udp was
> for queries, so you may want to confirm to avoid opening more than you need
> to.
Not necessarily, port 53/tcp is used for queries which are more larger
than 512 bytes. You should allow connection on 53/tcp also if you don't
permit zone transfer.
bye
-- blitzkrieg
- Previous message: Tom Geldner: "RE: Loading the ZoneAlarm firewall early"
- In reply to: Mike V: "Re: pix firewall and mail server"
- Next in thread: Rantcla@aol.com: "Re: pix firewall and mail server"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|