Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Disable DNS Lookup

Posted on 2008-10-19
3
Medium Priority
?
1,670 Views
Last Modified: 2013-12-16
Hi,

I am using vsftpd & experience high tarffic on udp port 53 which is DNS, I beleive this is when a log is writen to audit.log by the vsftpd. When i stop teh ftp server there is no more DNS traffic.
How can i disable the DNS lookup ? ther is no option through vsftpd & its not the syslog.
Can either be the PAM or some other OS options,

Danny
0
Comment
Question by:wefi
  • 2
3 Comments
 
LVL 3

Assisted Solution

by:leonjs
leonjs earned 800 total points
ID: 22753076
Quick question, are you running vsftpd on the inside network? Is it communicating with other machines in the inside network or is it communicating with machines outside the network.

If vsftpd is doing transactions with machines outside the network we can put a statement in the firewall to not all this kind of traffic from that host.

If the traffic is inside the network only in most cases it will never hit the firewall and you can make a similar change to your switches.

I am not familiar with vsftpd to say whether or not it has settings in the conf file for dns but i do think you could take out the nameservers in /etc/resolv.conf then this traffic will not be a issue anymore, assuiming this machine does not need dns at all.
0
 

Accepted Solution

by:
wefi earned 0 total points
ID: 22753108
Commenting out is a nic eworkaround which i can use but i was thinking there is a way to stop this.
I would need resolving at some point.

0
 

Author Comment

by:wefi
ID: 22753170
h
0

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I have written articles previously comparing SARDU and YUMI.  I also included a couple of lines about Easy2boot (easy2boot.com).  I have now been using, and enjoying easy2boot as my sole multiboot utility for some years and realize that it deserves …
In this article, the configuration steps in Zabbix to monitor devices via SNMP will be discussed with some real examples on Cisco Router/Switch, Catalyst Switch, NAS Synology device.
Learn how to find files with the shell using the find and locate commands. Use locate to find a needle in a haystack.: With locate, check if the file still exists.: Use find to get the actual location of the file.:
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…
Suggested Courses
Course of the Month10 days, 16 hours left to enroll

885 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question