Mike Hoskins (michoski) <micho...@cisco.com> wrote: > > This isn't even specific to DNS...for example, there was a time when just > "turning on what sounds good" for cisco, netscreen and even checkpoint > would break other things like ESMTP.
You mean Cisco have fixed the grossly damaging bugs in the PIX/ASA application layer filters? My favourite one is its insufficient cross-packet state, and habit of XXXXing out commands it does not understand, which leads to it XXXXing out RCPT commands that happen to be split between packets, leading to things like people being unsubscribed from mailing lists. (Sorry for straying off topic. I have less experience of Cisco PIX/ASA breaking DNS than of them breaking SMTP.) Tony. -- f.anthony.n.finch <d...@dotat.at> http://dotat.at/ Trafalgar: Cyclonic in northwest, otherwise mainly northerly or northwesterly 5 or 6. Slight or moderate. Showers in northwest. Good. _______________________________________________ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users