[unisog] DNS over TCP should we block

Leigh Heyman leigh at csail.mit.edu
Tue Jan 4 20:49:34 GMT 2005

Reg Quinton wrote:

> Assuming your clients are configured to use campus name servers there's 
> no need to open DNS over TCP (and UDP) to everyone -- constrain it to 
> just your campus DNS name servers.

Depending on the size of your campus that's a fairly broad assumption no?


More information about the unisog mailing list