svn commit: r202582 - head/etc/namedb

b. f. bf1783 at googlemail.com
Mon Jan 18 21:05:28 UTC 2010


>Author: dougb
>Date: Mon Jan 18 18:37:47 2010
>New Revision: 202582
>URL: http://svn.freebsd.org/changeset/base/202582
>
>Log:
>  Update the example named.conf file to answer locally for the newly
>  released IPv4 documentation ranges (http://tools.ietf.org/html/rfc5737)
>  and catch up to the IPv6 documentation range and domain names that 5737
>  also references.
>
>Modified:
>  head/etc/namedb/named.conf


What about the corresponding changes to /etc/rc.firewall? From RFC
5737 (my emphasis):

"The blocks 192.0.2.0/24 (TEST-NET-1), 198.51.100.0/24 (TEST-NET-2),
and 203.0.113.0/24 (TEST-NET-3) are provided for use in documentation
... Addresses within the TEST-NET-1, TEST-NET-2, and TEST-NET-3
blocks SHOULD NOT appear on the public Internet and are used without
any coordination with IANA or an Internet registry [RFC2050].  Network
operators SHOULD add these address blocks to the list of non-routeable
address spaces, and ***if packet filters are deployed, then this
address block SHOULD be added to packet filters. These blocks are not
for local use, and the filters may be used in both local and public
contexts.***

b.


More information about the freebsd-ipfw mailing list