Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 18 Jan 2010 15:35:55 -0500
From:      "b. f." <bf1783@googlemail.com>
To:        dougb@FreeBSD.org
Cc:        freebsd-ipfw@FreeBSD.org
Subject:   Re: svn commit: r202582 - head/etc/namedb
Message-ID:  <d873d5be1001181235t357c9734nc6a1cd3d0b3bebec@mail.gmail.com>

next in thread | raw e-mail | index | archive | help
>Author: dougb
>Date: Mon Jan 18 18:37:47 2010
>New Revision: 202582
>URL: http://svn.freebsd.org/changeset/base/202582
>
>Log:
>  Update the example named.conf file to answer locally for the newly
>  released IPv4 documentation ranges (http://tools.ietf.org/html/rfc5737)
>  and catch up to the IPv6 documentation range and domain names that 5737
>  also references.
>
>Modified:
>  head/etc/namedb/named.conf


What about the corresponding changes to /etc/rc.firewall? From RFC
5737 (my emphasis):

"The blocks 192.0.2.0/24 (TEST-NET-1), 198.51.100.0/24 (TEST-NET-2),
and 203.0.113.0/24 (TEST-NET-3) are provided for use in documentation
... Addresses within the TEST-NET-1, TEST-NET-2, and TEST-NET-3
blocks SHOULD NOT appear on the public Internet and are used without
any coordination with IANA or an Internet registry [RFC2050].  Network
operators SHOULD add these address blocks to the list of non-routeable
address spaces, and ***if packet filters are deployed, then this
address block SHOULD be added to packet filters. These blocks are not
for local use, and the filters may be used in both local and public
contexts.***

b.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?d873d5be1001181235t357c9734nc6a1cd3d0b3bebec>