Re: Problems transfering zones to slave DNS servers

  • From: "Max" <max.bene@xxxxxxxxxxxx>
  • To: isalist@xxxxxxxxxxxxx
  • Date: Thu, 21 Feb 2002 10:58:52 -0700

Sorry Jim,
DNS Queries require TCP Port 53, Zone transfers require UDP Port 53...

In addition, you have to allow Zone Transfer in W2K DNS Server...
If the Server is published on a public network I suggest to limit the
allow zone transfer only to certain servers... for security purpose...

Max

> Zone transfers require a packet filter as:
> TCP
> Inbound
> Remote port any
> Local port 53.
> 
> Jim Harrison
> MCP(NT4, W2K), A+, Network+, PCG
> http://isaserver.org/authors/harrison/
> Read the books!
> 
> ----- Original Message -----
> From: "Silviu Bondalici" <silviub@xxxxxxxx>
> To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
> Sent: Thursday, February 21, 2002 03:37
> Subject: [isalist] Problems transfering zones to slave DNS servers
> 
> 
> http://www.ISAserver.org
> 
> 
> My SBS server is mail, DNS, Firewall, proxy, DC, ETC. A have some zones
> and my server is master server. When I try to transfer all zones to slave
> servers, I can do that enabling ALLOW FULL packet filter (meaning I have
> no firewall). I have published DNS server in order to allow queries and
> zone transfer. I also created a DNS Query ALLOW packet filter. Nothing. It
> is working only when I enable ALLOW FULL packet filter.
> Any sugestions?
> Thanks in advance.
> 
> ------------------------------------------------------
> You are currently subscribed to this ISAserver.org Discussion List as:
> jim@xxxxxxxxxxxx
> To unsubscribe send a blank email to $subst('Email.Unsub')


Other related posts: