[unisog] DNS over TCP should we block

Leigh Heyman leigh at csail.mit.edu
Tue Jan 4 20:49:34 GMT 2005


Reg Quinton wrote:

> 
> Assuming your clients are configured to use campus name servers there's 
> no need to open DNS over TCP (and UDP) to everyone -- constrain it to 
> just your campus DNS name servers.
> 

Depending on the size of your campus that's a fairly broad assumption no?

-Leigh





More information about the unisog mailing list