From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([208.92.234.80] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1Qu7T7-0003qg-4D for garchives@archives.gentoo.org; Thu, 18 Aug 2011 18:37:29 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 0939B21C175; Thu, 18 Aug 2011 18:37:19 +0000 (UTC) Received: from mail-fx0-f53.google.com (mail-fx0-f53.google.com [209.85.161.53]) by pigeon.gentoo.org (Postfix) with ESMTP id B625921C12E for ; Thu, 18 Aug 2011 18:36:27 +0000 (UTC) Received: by fxd23 with SMTP id 23so1822725fxd.40 for ; Thu, 18 Aug 2011 11:36:26 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :content-type; bh=0DE3ikdR9enJOfystu2VHd3WWYWUmRhDpQnYf5gPdlQ=; b=bo/e2c5OQhHxOrpPAJ0/N2xCeD5n0Pb25gtwr3GkcFBp/xU6wURgpXOIY+hd+ZnNUx SqkO3GJGNKR6nmp3rBzESJ8D9v+a5Hyx/2nVN915uO57YDokZaHd07pXAr4lK+Vb7OtD 1zxrfz1fQVWU3bOWI2XcaVPyuuP190QANqWi4= Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@lists.gentoo.org Reply-to: gentoo-user@lists.gentoo.org MIME-Version: 1.0 Received: by 10.223.5.19 with SMTP id 19mr1519701fat.26.1313692586748; Thu, 18 Aug 2011 11:36:26 -0700 (PDT) Received: by 10.223.104.83 with HTTP; Thu, 18 Aug 2011 11:36:26 -0700 (PDT) In-Reply-To: <4E4D5757.9050006@binarywings.net> References: <2014422.cuJOgXTDR9@nazgul> <4E4D5757.9050006@binarywings.net> Date: Thu, 18 Aug 2011 14:36:26 -0400 Message-ID: Subject: Re: [gentoo-user] Running HTTP and DNS on same machine From: Michael Mol To: gentoo-user@lists.gentoo.org Content-Type: text/plain; charset=UTF-8 X-Archives-Salt: X-Archives-Hash: dafc5fd03c7bdf0ea29548012ef1f001 On Thu, Aug 18, 2011 at 2:17 PM, Florian Philipp wrote: > Am 18.08.2011 03:35, schrieb Michael Mol: >> On Wed, Aug 17, 2011 at 5:53 PM, Alan McKinnon wrote: >>> On Wed 17 August 2011 17:23:41 Michael Mol did opine thusly: >>> At a minimum they should be on different interfaces and preferably in >>> chroots. Otherwise all manner of $BAD_STUFF happens. >> >> Hm. Interested. >> >> echo $BAD_STUFF >> >> (or URI) >> > > URI: http://cr.yp.to/djbdns/separation.html Ah, gotcha. Yeah, I'm a bit worried about that. Even though I use a FQDN, I'm only authorative within my own network and I don't (yet) expose my DNS records publicly. (It all resolves to RFC1918 addresses...what'd be the point?) -- :wq