> 
> You are strongly advised to use IP addresses instead of hostnames in firewall 
> rulesets, to avoid DNS spoofing attacks subverting your firewall.  Ideally, your 
> firewall should function without depending on any external network resources.
> 
I know that, I control the domains and additionally they are for non-critical
resources like NTP access. Obviously all rules really important are based
on IP addresses.

Pete

_______________________________________________
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to