Bob,
I finally got time to test editing of init.d/beeps. This did work to prevent the UTM from contacting the root DNS servers. Following up on the last post from a sometime back I followed you guidence an place the entries right after $CMD > /opt/tmpfs/hwinfo in init.d/beeps.
I added these lines to /etc/init.d/beeps:
sed -i -- 's/recursion yes/recursion no/g' /var/sec/chroot-bind/etc/named.conf
sed -i -- 's/forward first/forward only/g' /var/sec/chroot-bind/etc/named.conf
Thanks,
Jim
Editing Init.d/Beeps
All-
I was reading an old post regarding editing beeps to so named.conf would maintain a forward only state during restart and UTM nightly activities. By making named.conf forward only the root DNS severs would not be contacted. Can someone help with adding the following lines to beeps in their correct location? I added them in the start section but received a number of errors on start up. Thanks you in advance for your help. Jim
I added these lines to /etc/init.d/beeps:
sed -i -- 's/recursion yes/recursion no/g' /var/sec/chroot-bind/etc/named.conf
sed -i -- 's/forward first/forward only/g' /var/sec/chroot-bind/etc/named.conf
This thread was automatically locked due to age.
Top Replies
-
Hi Bob,
I am seeking to stop the continous polling of the root DNS servers as described in the enclosed link below. There is nothing worng with the UTM it works well. However if there is a way to return…
-
Offline BAlfson 3 months ago
Hey Jim,
What is the issue you're having that makes you look for this solution? How is your DNS configuration different from DNS best practice?
Cheers - Bob
Sophos UTM Community Moderator
Sophos Certified Architect - UTM
Sophos Certified Engineer - XG
Gold Solution Partner since 2005MediaSoft, Inc. USA -
Hi Bob,
I am seeking to stop the continous polling of the root DNS servers as described in the enclosed link below. There is nothing worng with the UTM it works well. However if there is a way to return using forwarders absent of contacting the root servers I would like to try it. The issue is I am not farmiliar with the formating of beep so I am asking for guidence to correctly add the entries.
Thanks,
Jim
-
I just did a Google, Jim, and I see this is a long-time concern of yours!
I haven't done it, but I'd probably try putting that right before or after $CMD > /opt/tmpfs/hwinfo. Any luck with that?
Cheers - Bob
Sophos UTM Community Moderator
Sophos Certified Architect - UTM
Sophos Certified Engineer - XG
Gold Solution Partner since 2005MediaSoft, Inc. USA-
Hi Bob,
I'll give it a try as I have some time this weekend. Thank you for your help!
Thanks,
Jim
-
-
© 1997 - 2020 Sophos Ltd. All rights reserved.
This thread was automatically locked due to age.