Hi all,
tried to search and came up dry. but I have a question, and forgive me in advance if it's a bone-headed one. Knowing that attackers try to use DNS to fingerprint networks, is it a good idea to have a packet filter rule to allow outbound DNS requests from the internal network?
Currently i have my ASG220 running my PPPoE access, and serving as the public IP addy endpoint, and it automatically gets DNS forwarding server info from the PPPoE connection. so do i need the packet filter rule:
Internal network --> DNS ----> Any "Allow" ?
[:S]
or can i just turne that rule off?
This thread was automatically locked due to age.