Jump to content

DNS ACL


fiveworlds

Recommended Posts

Hi, I was wondering is there any dns program that allows you to implement access control lists to only certain webpages or ban certain ip addresses so that the attacker recieves a random loopback address instead of my ipaddress?

Link to comment
Share on other sites

Im sure there is some standalone software that can do that, at least logically it would seem that there has to be. Its probably a part of some bigger functiinality though...I've configured access lists on DNS on some HP rack server years ago and if I remember correctly it was a functionality within the servers network card dedicated software. Probably advanced servers can do this from within their configuration software. Couldnt you do it from within linux ?

Link to comment
Share on other sites

How about setting up any two DNS daemons at normal port, and at f.e. port+1. Or on two different machines in intranet.

Then in firewall set up rule that if IP address is connecting to modem-router-server at normal port, it's forwarded to port+1, and using completely different DNS daemon than somebody with legit IP.

Just a thought.

Edited by Sensei
Link to comment
Share on other sites

Then in firewall set up rule that if IP address is connecting to modem-router-server at normal port, it's forwarded to port+1, and using completely different DNS daemon than somebody with legit IP.​

 

 

That would definitely work.

 

servers network card dedicated software.

 

 

Yeah it appears as though alot of this is done by networking equipment. However most don't allow you to redirect the user to 127.0.0.1 or elsewhere they just deny the request.

Edited by fiveworlds
Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.