Re: DNS server and hosts file???

From: Deji Akomolafe (deji_at_)
Date: 02/27/04


Date: Fri, 27 Feb 2004 07:31:11 -0800

As always, it's best to use the right tool for the right project. While
doing this host file stuffs may be cheap in terms of cash, using something
like ISA Server (or even SurfControl) is the "proper" way to accomplish
this, IMO. The cash you "save" by going the hosts file route will all be
spent on countless hours of maintaining multiple host files on multiple
clients, as well as procurring large supply of Aspirin and Tylenol.

Just to say, DNS was not designed for this.

-- 
Sincerely,
Dèjì Akómöláfé, MCSE MCSA MCP+I
www.akomolafe.com
www.iyaburo.com
Do you now realize that Today is the Tomorrow you were worried about
Yesterday?  -anon
"Ace Fekay [MVP]" <firstnamelastname@hotmail.com> wrote in message
news:#V9pmNU$DHA.620@TK2MSFTNGP11.phx.gbl...
> "PJ" <pj@freemail.lt> wrote in message
> news:eaJQWDU$DHA.3400@tk2msftngp13.phx.gbl...
> > Hi all,
> >
> > Have a quastion. I want to block spyware programs access to spyware
sites
> on
> > corporate network computers. I download HOSTS file with most spyware
sites
> > and plase it on our DNS servers - but as I see it didnot work (DNS did
not
> > use HOSTS file for lookup).
> >
> > Can I change this?
> > May be possible to upload text file to DNS server cashe?
> >
> > Thank You...
> >
> >
>
> Hosts files on a machine areonly for that machine when resolving. So the
> hosts file on a DNS server will only be good for YOU when you are cruising
> the net from THAT machine.
>
> You would have to put the hosts files on each client individually. Can you
> load it in DNS cache? NO. What you would need is to create the rogue
spyware
> zones individually in DNS and point them to 127.0.0.2 so they won't
resolve,
> unless there's a 3rd party tool to do that for you.
>
> -- 
> Regards,
> Ace
>
> Please direct all replies to the newsgroup so all can benefit.
> This posting is provided "AS IS" with no warranties.
>
> Ace Fekay, MCSE 2000, MCSE+I, MCSA, MCT, MVP
> Microsoft Windows MVP - Active Directory
> -- 
> =================================
>
>
>


Relevant Pages

  • Re: where are the newsgroups???
    ... All other websites are fine. ... >If you have any other thoughts on what is happening to the DNS, ... Spyware Info: ... Block possibly dangerous websites with a Hosts file. ...
    (microsoft.public.windowsxp.network_web)
  • Re: Hosts file ignored
    ... > any of the entries I have made to the server's hosts file. ... > Successfully flushed the DNS Resolver Cache. ... > I am not running a DNS server on my system. ... > I can ping IP addresses without any problem, both on the LAN and on ...
    (microsoft.public.windows.server.general)
  • Re: DNS cache and hosts file ignored
    ... On occassion I've had DNS resolution fail ... Quoting my nice shiny new "Microsoft Windows Server 2003 TCP/IP ... does not ignore the hosts file, but the resolver may not be able to read it! ... At least they are reporting it, though a read only option would be ...
    (microsoft.public.windowsxp.network_web)
  • Re: Cant see out to .co.uk from inside my .local domain (forward l
    ... Ping cp.xxx.co.uk, same question. ... I found out the ip of my .co.uk so I put this into the hosts file of the ... network only from the server which I changed the hosts file for. ... Indeed is it even a DNS issue. ...
    (microsoft.public.windows.server.sbs)
  • Re: Cant see out to .co.uk from inside my .local domain (forward l
    ... Well I removed the entry from my hosts file and issued a ping command to both ... network only from the server which I changed the hosts file for. ... Indeed is it even a DNS issue. ...
    (microsoft.public.windows.server.sbs)