Should Bind9 Name Server be run behind a firewall?

Linux Kernel, Network, and Services configuration.
Post Reply
Message
Author
Programming Padawan
Posts: 8
Joined: 2022-11-23 14:16
Has thanked: 1 time

Should Bind9 Name Server be run behind a firewall?

#1 Post by Programming Padawan »

I have working to get a Bind9 authoritative name server running. I am using an Incus (LXC) system container (debian12) to do this in. It is apparently a base system as there are only 19 services listed when I run the 'systemctl --type=service' command.

Should I also install and configure the iptables on this system? Would this help the name server security?

I would appreciate your thoughts.

W.

User avatar
bw123
Posts: 4037
Joined: 2011-05-09 06:02
Has thanked: 1 time
Been thanked: 31 times

Re: Should Bind9 Name Server be run behind a firewall?

#2 Post by bw123 »

This is a really great document, don't rush it. Some ideas probably have transitioned to other solutions by now, but it's the approach to security that I really like.
https://www.debian.org/doc/manuals/secu ... ex.en.html
resigned by AI ChatGPT

Post Reply