The BIND option that should be used to limit the IP addresses from which slave name servers may connect is allow-transfer. This option specifies a list of IP addresses or networks that are allowed to request zone transfers from the master name server. Zone transfers are the mechanism by which slave name servers obtain a copy of the zone data from the master name server. By limiting the IP addresses that can request zone transfers, the master name server can prevent unauthorized access to the zone data and reduce the network load123 References:
LPIC-2 Overview
LPIC-2 202-450
BIND 9 Administrator Reference Manual
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit