From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-oi0-x22f.google.com (mail-oi0-x22f.google.com [IPv6:2607:f8b0:4003:c06::22f]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by huchra.bufferbloat.net (Postfix) with ESMTPS id 77AFA21F2A1 for ; Tue, 25 Nov 2014 21:12:36 -0800 (PST) Received: by mail-oi0-f47.google.com with SMTP id v63so1520543oia.6 for ; Tue, 25 Nov 2014 21:12:34 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type:content-transfer-encoding; bh=tYqKdqOI6HYXWvbzsufl5O3Zn1ZUfYX+JHM4jdqXVA0=; b=S8R37Ed6G3c12aBtHiLIHsTvl7S+4SAGSF/2yMuEuMXYEY+ZafK0Ol8YeRPry9Y/lH 6zrYX+VoVjqd1tDm3+anM69nUkDOLvLzY/98c+Z4yMzTXXhZr+2QKlQKH/sjrWO4xkBx 7qQUvjcyNdly7rwzm9YEvNRSamTJIoMzShpm1EcKmBrfZDkSz+91PJfkQAb9kAzdZ+sh ykDur3E00jJV83lkw00osuI5bRF4rXDNZaxM+6aDQ18Sfmc84Ij/Cg/UWOtkVNKuebs6 krVDvwFcfWpTBr7rbIv5ZJUlbHbvtJh7GKdAaVhwUnid1vMNkf0lMzJobxiZmtKA9MT1 2SBA== MIME-Version: 1.0 X-Received: by 10.60.177.137 with SMTP id cq9mr17907652oec.45.1416978754756; Tue, 25 Nov 2014 21:12:34 -0800 (PST) Received: by 10.202.227.211 with HTTP; Tue, 25 Nov 2014 21:12:34 -0800 (PST) In-Reply-To: <10314.1416970498@sandelman.ca> References: <1316.1416939941@sandelman.ca> <10314.1416970498@sandelman.ca> Date: Tue, 25 Nov 2014 21:12:34 -0800 Message-ID: From: Dave Taht To: Michael Richardson Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable Cc: cerowrt-devel Subject: Re: [Cerowrt-devel] open recursive DNS server X-BeenThere: cerowrt-devel@lists.bufferbloat.net X-Mailman-Version: 2.1.13 Precedence: list List-Id: Development issues regarding the cerowrt test router project List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 26 Nov 2014 05:13:04 -0000 On Tue, Nov 25, 2014 at 6:54 PM, Michael Richardson wrot= e: > > Dave Taht wrote: > > hmm. you should still have been firewalled off. Is it really respon= ding > > to dns queries from the outside world? > > yes.... mind you I have routeable IP(v4)s addresses which are used to NAT > internal hosts to, and both those and the ppp interface respond... > > > Add to /etc/config/dhcp > > > list notinterface 'yourotherinterface' > > > there are other ways. > > Can I list more than one interface to ignore? I'd rather list both the > underlying "ge00" interface (which was already there), and the pppoe-XXXX > interface. it is a list. add as many list lines as you like. > > -- > ] Never tell me the odds! | ipv6 mesh netwo= rks [ > ] Michael Richardson, Sandelman Software Works | network archite= ct [ > ] mcr@sandelman.ca http://www.sandelman.ca/ | ruby on rails= [ > > > --=20 Dave T=C3=A4ht thttp://www.bufferbloat.net/projects/bloat/wiki/Upcoming_Talks