Date: Mon, 18 Jan 2010 15:35:55 -0500 From: "b. f." <bf1783@googlemail.com> To: dougb@FreeBSD.org Cc: freebsd-ipfw@FreeBSD.org Subject: Re: svn commit: r202582 - head/etc/namedb Message-ID: <d873d5be1001181235t357c9734nc6a1cd3d0b3bebec@mail.gmail.com>
next in thread | raw e-mail | index | archive | help
>Author: dougb >Date: Mon Jan 18 18:37:47 2010 >New Revision: 202582 >URL: http://svn.freebsd.org/changeset/base/202582 > >Log: > Update the example named.conf file to answer locally for the newly > released IPv4 documentation ranges (http://tools.ietf.org/html/rfc5737) > and catch up to the IPv6 documentation range and domain names that 5737 > also references. > >Modified: > head/etc/namedb/named.conf What about the corresponding changes to /etc/rc.firewall? From RFC 5737 (my emphasis): "The blocks 192.0.2.0/24 (TEST-NET-1), 198.51.100.0/24 (TEST-NET-2), and 203.0.113.0/24 (TEST-NET-3) are provided for use in documentation ... Addresses within the TEST-NET-1, TEST-NET-2, and TEST-NET-3 blocks SHOULD NOT appear on the public Internet and are used without any coordination with IANA or an Internet registry [RFC2050]. Network operators SHOULD add these address blocks to the list of non-routeable address spaces, and ***if packet filters are deployed, then this address block SHOULD be added to packet filters. These blocks are not for local use, and the filters may be used in both local and public contexts.*** b.
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?d873d5be1001181235t357c9734nc6a1cd3d0b3bebec>