|
|
|||
|
|
|||
![]() |
|
Important NoteImproperly formed Access Control Lists can result in locking yourself out of your easyDNS account. You should always test your ACL's using the "test this ACL" utility before committing them. If you are not sure how to proceed or do not fully understand the scope of this tutorial, you should contact support before enabling an ACL. Remember, ACL's do not replace other security considerations, they enhance them. It is still your responsibility to secure your username and password as well as to select a secure secret question and answer pair. Security and Access Control ListsIt is possible to limit logins to your account so that logins will only be accepted from network locations specified by you. This vastly improves security in the case where your account username and password are compromised, a third party may not be able log into your account and assume control of your domains if you have an Access Control List specified limiting logins. Example Usage ScenarioYou may have a small Local Area Network in your office and some remote users working on workstations under your company domain name. You can then specify the network block your office LAN resides on: 192.168.42.0/24In this case the class C netblock beginning on 192.168.42.0. You could additionally or optionally specify a hostmask: *.example.com The result of having the two examples above entered into your "Access Control List" on your easyDNS account is as follows:
How the ACL is ProcessedWhen a login attempt is made to an account with an ACL enabled, the ACL is processed one line at a time and any one match is sufficient to allow access. That is to say, if an ACL contains 5 lines, the current connection need only match 1 line of those 5 to be granted access. It is important to note that invalid logins (i.e. bad passwords) result in access denial regardless of whether the current connection fulfills the Access Control List or not. Valid Types of ACL EntriesYou can enter the following types of entries into your Access Control List:
Using ACL's with Dynamic DNS
If you are using The way to get this to work is simply yo specify an "exact hostname" in your ACL for the device using the dynamic DNS, examples are "laptop.example.com", "dsl.example.com", "me-and-my-shadow.example.com". When your IP changes your dynamic DNS client will update your DNS settings here, then when you come in to log in we will see that your new IP matches your "exact hostname" ACL and access will be granted. What to do if you are locked out of your accountYou can contact support if for some reason your ACL malfunctions. By default, if you supply your account secret question/answer then our support staff can remove your ACL settings only, at which point you should be able to log in with your username & password. The security settings also provide an extra level of security in the Override token, which you can specify a different "password" than your secret question/answer pair. If this value is set then easyDNS Support staff will only remove your current ACL settings upon receipt (verbally or via email) of this other "override token" and not from the secret question/answer pair.
Domain Name Registration
|
Domain Name Transfers
|
E-Mail Forwarding
|
|
|
|
|
|
|