Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I started out on a mission to block instant messaging- (AIM, Yahoo, MSN) To avoid an endless list of IP's, I was planning on blocking the login servers by DNS name. I soon discovered that our PIX cannot resolve any hostnames. It can ping to the...
I see. So what is the best way to deal with restricting access to DNS names that resolve to multiple and/or dynamic IP's? Are there any alternatives to manually maintaining a host file/access list? Thanks for your help!-P