> > You are strongly advised to use IP addresses instead of hostnames in firewall > rulesets, to avoid DNS spoofing attacks subverting your firewall. Ideally, your > firewall should function without depending on any external network resources. > I know that, I control the domains and additionally they are for non-critical resources like NTP access. Obviously all rules really important are based on IP addresses.
Pete _______________________________________________ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"