In article <[email protected]>,
 "Browne, Stuart" <[email protected]> wrote:

> If you're filtering on an upstream device that can do that level of analysis 
> without hurting your network, then maybe, but once again, you're 
> double-processing every legitimate query; you're only moving the cost to a 
> different device.

An upstream firewall might already be parsing it, so telling it not to 
pass some of them through could be relatively cheap.

-- 
Barry Margolin
Arlington, MA
_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe 
from this list

bind-users mailing list
[email protected]
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to