View Single Post
Old 15th January 2010
jggimi's Avatar
jggimi jggimi is offline
More noise than signal
 
Join Date: May 2008
Location: USA
Posts: 7,983
Default

Joostvgh would have has the same topology issues (routing/NAT) and easy circumventions (tunneling of DNS, private lookups, etc.) It is, in effect, merely replacing a DNS server with a server that acts like one.

But it -seems- it would be easier to adapt to the entire domain and changes within the domain as they occur than PF's more limited DNS resolution only at rule-load.

Last edited by jggimi; 15th January 2010 at 04:46 AM.
Reply With Quote