This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Init.d Beeps

Bob,

I finally got time to test editing of init.d/beeps. This did work to prevent the UTM from contacting the root DNS servers. Following up on the last post from a sometime back I followed you guidence an place the entries right after $CMD > /opt/tmpfs/hwinfo in init.d/beeps. 

I added these lines to /etc/init.d/beeps:

sed -i -- 's/recursion yes/recursion no/g' /var/sec/chroot-bind/etc/named.conf
sed -i -- 's/forward first/forward only/g' /var/sec/chroot-bind/etc/named.conf

Thanks,

Jim

Editing Init.d/Beeps

All-

I was reading an old post regarding editing beeps to so named.conf would maintain a forward only state during restart and UTM nightly activities. By making named.conf forward only the root DNS severs would not be contacted. Can someone help with adding the following lines to beeps in their correct location? I added them in the start section but received a number of errors on start up. Thanks you in advance for your help. Jim

I added these lines to /etc/init.d/beeps:

sed -i -- 's/recursion yes/recursion no/g' /var/sec/chroot-bind/etc/named.conf
sed -i -- 's/forward first/forward only/g' /var/sec/chroot-bind/etc/named.conf



This thread was automatically locked due to age.

Top Replies

  • scottj_01
    Online scottj_01 3 months ago +1 verified

    Hi Bob,

    I am seeking to stop the continous polling of the root DNS servers as described in the enclosed link below. There is nothing worng with the UTM it works well. However if there is a way to return…

  • Hey Jim,

    What is the issue you're having that makes you look for this solution?  How is your DNS configuration different from DNS best practice?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
    • Hi Bob,

      I am seeking to stop the continous polling of the root DNS servers as described in the enclosed link below. There is nothing worng with the UTM it works well. However if there is a way to return using forwarders absent of contacting the root servers I would like to try it. The issue is I am not farmiliar with the formating of beep so I am asking for guidence to correctly add the entries.

      https://community.sophos.com/products/unified-threat-management/f/general-discussion/80440/mysterious-root-dns-zone-queries-in-ns-generated-by-utm-9

      Thanks,

      Jim

      • BAlfson
        Offline BAlfson 3 months ago in reply to scottj_01

        I just did a Google, Jim, and I see this is a long-time concern of yours!

        I haven't done it, but I'd probably try putting that right before or after $CMD > /opt/tmpfs/hwinfo.  Any luck with that?

        Cheers - Bob

         
        Sophos UTM Community Moderator
        Sophos Certified Architect - UTM
        Sophos Certified Engineer - XG
        Gold Solution Partner since 2005
        MediaSoft, Inc. USA
       

      © 1997 - 2020 Sophos Ltd. All rights reserved.



      This thread was automatically locked due to age.
      Parents
      • Cool, Jim!

        I've unlocked your original thread now, so you can post there and delete this thread if you want.

        Cheers - Bob  

         
        Sophos UTM Community Moderator
        Sophos Certified Architect - UTM
        Sophos Certified Engineer - XG
        Gold Solution Partner since 2005
        MediaSoft, Inc. USA
      Reply
      • Cool, Jim!

        I've unlocked your original thread now, so you can post there and delete this thread if you want.

        Cheers - Bob  

         
        Sophos UTM Community Moderator
        Sophos Certified Architect - UTM
        Sophos Certified Engineer - XG
        Gold Solution Partner since 2005
        MediaSoft, Inc. USA
      Children
      No Data