K-12 Forums

Talk with other K-12 network administrators in your state.

Or see all states.

Categories

Vanilla 1.1.4 is a product of Lussumo. More Information: Documentation, Community Support.

This discussion has been inactive for longer than 30 days, and is thus closed.
    • CommentAuthorskubinnada
    • CommentTimeAug 21st 2009
     permalink
    I am part of an organization that blocks all DNS requests except those it specifically allows. This poses a problem for our frequent travelers. I would like to use your service, but I suspect that I would have to allow more than just 208.67.220.220 & 208.67.222.222. Is it possible to get a comprehensive list of IPs associated with OpenDNS so that I can allow queries from all of your servers? nI appreciate your response.
    • CommentAuthorjoe262
    • CommentTimeAug 21st 2009
     permalink
    Are you running authoritative nameservers? If so, then requiring a whitelist of who can query them will cause you all kinds of problems, regardless of if *you* use OpenDNS or not.

    If not, then why would then OpenDNS resolvers need to query your servers at all?
    • CommentAuthorrotblitz
    • CommentTimeAug 21st 2009
     permalink
    @skubinnada
    "I suspect that I would have to allow more than just 208.67.220.220 & 208.67.222.222."
    Why? No! OpenDNS is anycasted, and there are no other addresses, which could be used to reach their DNS lookup service - worldwide. In fact there are two more addresses, in case you need it due to router requirements: 208.67.220.222 & 208.67.222.220.
    http://www.opendns.com/support/article/197

    "This poses a problem for our frequent travelers."
    You do not really even think about to use filtering in networks you do not own, do you? No worry, you still may be able to use OpenDNS for DNS lookups - or even not.

This discussion has been inactive for longer than 30 days, and is thus closed.