>Also, for goodness sake, please disallow root login via ssh. I forgot to mention that I did that too (among a few other minor tweaks) It's a new dns server which I just put up for testing purposes... so it's not that big of a deal.
>I highly recommend the use of shorewall for something like this. yup, thanks! Keep posting your security ideas/knowledge though... I'm sure everyone will benefit. Jared