Re: srcdomain ACL's, reverse and direct lookups...

From: Henny Bekker <henny@dont-contact.us>
Date: Tue, 10 Feb 1998 01:24:30 +0100 (MET)

> On Mon, 9 Feb 1998 Thierry.Agassis@unicible.ch wrote:
>
> > So, it seems that using src ACL's rather than srcdomain is more secure,
> > isn't it ?
>
> Yes, it is, and it's faster too.
>
And the DNS server isn't a single point of failure anymore... With srcdomain
you could get unwanted "unauthorized messages" in the event of a DNS failure..

Cheers, Henny

-- 
-----------------------------------------------------------------------------
E-Mail: Henny.Bekker@cc.ruu.nl    ! Disclaimer: The main obstacle to progress
http    http://www.ruu.nl/~henny  !             progress is not ignorance,but
PTT:    Voice: +31 30 2536971 Fax: +31 30 2531633 ! the illusion of knowledge
X500:   cn=Henny Bekker, ou=TC, ou=ACCU, o=UU, c=NL                      o
Paper:  H.J.Bekker, Utrecht University, Computer Centre              _  /- _
        Po Box 80011, 3508 TA  Utrecht  Nederland                   (_) > (_)
-----------------------------------------------------------------------------
Received on Mon Feb 09 1998 - 16:31:14 MST

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:38:50 MST