About the conflict between named and pdnsd.

2014-03-02 Thread Hongyi Zhao
Hi all, I use debian wheezy. In order to solve the dns pollution issue for my case. I install the pdnsd (see here for detail: http://members.home.nl/p.a.rombouts/pdnsd/)on my system. At the same time, I also have the bind9 installed by default. But the issue for my case is as follows: Bothe

Re: disabling stateful firewalls for DNS traffic

2014-03-02 Thread /dev/rob0
On Mon, Mar 03, 2014 at 09:48:20AM +0800, Drunkard Zhang wrote: > 2014-03-02 3:04 GMT+08:00 /dev/rob0 : snip > > root@tp:~# iptables-save snip > > # Generated by iptables-save v1.4.20 on Sat Mar 1 12:42:55 2014 > > *raw > > :PREROUTING ACCEPT [96:19019] > > :OUTPUT ACCEPT [118:13918] > > -A PREROU

Re: disabling stateful firewalls for DNS traffic

2014-03-02 Thread Drunkard Zhang
2014-03-02 3:04 GMT+08:00 /dev/rob0 : > On Sat, Mar 01, 2014 at 03:35:25PM +, Phil Mayers wrote: >> On 01/03/2014 14:30, Chuck Anderson wrote: >> >> >How should these rules be changed to adhere to the Best Practices >> >while not breaking anything and still allowing the servers to do >> >their