Stopping Open DNS - FireBrick 2700: Difference between revisions
mNo edit summary |
m (→Testing Access: clean up, typos fixed: eg: → e.g.:) |
||
Line 18: | Line 18: | ||
Enter an Source IP of an IP on the Internet. |
Enter an Source IP of an IP on the Internet. |
||
The FireBrick will then list all the services open to that IP address, |
The FireBrick will then list all the services open to that IP address, e.g.: |
||
DNS resolver access:- |
DNS resolver access:- |
Revision as of 21:19, 6 Ocak 2015
On a FireBrick 2700 the DNS service defaults to local-only - this prevents access to the FireBrick DNS resolver from the WAN by default.
The setting for this is found in the Web config editor at:
Config -> Edit -> Setup -> General system services -> DNS service settings -> local-only
- Then re-test from the Control Pages: https://clueless.aa.net.uk/dnsresolvers.cgi
Testing Access
The web interface of the FireBrick can list what services are open, go to
Diagnostics -> Access Check
Enter an Source IP of an IP on the Internet.
The FireBrick will then list all the services open to that IP address, e.g.:
DNS resolver access:- This address is not on a local Ethernet subnet and so not allowed access.