[buug] DNS help: tricking my network

f.johan.beisser jan at caustic.org
Mon Sep 9 16:47:52 PDT 2002


it's bad form to respond to yourself.. but..

On Mon, 9 Sep 2002, f.johan.beisser wrote:

> you can't, in bind 8. not without specifying it a little different.

i should be more clear. you can specify "internal" names. for example:

	foo.example.com has an internal name of foo.int.example.com

when you look up foo.example.com, it resolves to 12.34.56.78. when you
look up foo.int.example.com, it resolves to 10.0.0.78.

in bind9, you have the option of "views" which can limit what external and
internal machines can see through the DNS. so, foo.example.com from my
side is 12.34.56.78, but to you it's 10.0.0.78.

i don't know much more about this though.

-------/ f. johan beisser /--------------------------------------+
  http://caustic.org/~jan                      jan at caustic.org
    "John Ashcroft is really just the reanimated corpse
         of J. Edgar Hoover." -- Tim Triche




More information about the buug mailing list