[ previous ] [ next ] [ threads ]
 From:  "Lee Sharp" <leesharp at hal dash pc dot org>
 To:  "Mono Dev List" <m0n0wall dash dev at lists dot m0n0 dot ch>
 Subject:  Re: [m0n0wall-dev] Feature Needed: Passthrough for destanation domain name (CP)
 Date:  Sat, 12 Aug 2006 11:25:31 -0500
From: "Alex M" <radiussupport at lrcommunications dot net>

> Ok thanks Lee, I added my DNS and it works!
> Then why shouldn't we set it that's way that DNS that is obtained
> automatically from ISP would be added to Pass-through whenever it is
> obtained?

Default DHCP settings give your hosts m0n0wall as the DNS server, so it is 
not a problem for most.  This also is often faster, and kinder on the 
bandwidth than outside DNS.

> And still, if I have 3 IPs for Google, I would rather want to enter just a
> name rather then hunting for IPs that could be changed!

Trouble for security.  Names are subject to DNS poisoning.  And extra layer 
of security when someone takes over windowsupdate.microsoft.com as the 
hijacked address won't be in my passthrough.