Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 05 May 2001 10:44:50 +0200
From:      Sheldon Hearn <sheldonh@uunet.co.za>
To:        anderson@centtech.com
Cc:        Andrew Barros <abarros@tjhsst.edu>, "lists@mail.ru" <lists@mail.ru>, freebsd-security@freebsd.org
Subject:   Re: reverse or not 
Message-ID:  <65662.989052290@axl.fw.uunet.co.za>
In-Reply-To: Your message of "Fri, 04 May 2001 08:17:00 EST." <3AF2ABCC.B5776288@centtech.com> 

next in thread | previous in thread | raw e-mail | index | archive | help


On Fri, 04 May 2001 08:17:00 EST, Eric Anderson wrote:

> I think if you have (in your /etc/host.conf) bind listed before hosts
> (meaning it will ask the dns server before looking at the hosts file),
> it would delay if the dns server doesn't have a reverse entry for
> 127.0.0.1 [...]

From a security perspective, I'm pretty sure that hosts should NEVER
rely on any external source for resolution on the loopback network.

Ciao,
Sheldon.

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?65662.989052290>