In regards to DNS there is a great secure BIND template here http://www.cymru.com/Documents/secure-bind-template.html which will help stop your server from being an unneeded open resolver, or sending out root hints which are used all the time to amplify DDOS attacks often without you realising. Bradley -----Original Message----- From: Philip Lavine [mailto:source_route@yahoo.com] Sent: 21 May 2009 14:39 To: nanog@nanog.org Subject: ISP best practices To all, I am sure this has been asked 10 to the 1 millionth power times, however may be the rules have changed. I am looking to set up a really small ISP with a few /24's. I want to host DNS as well. Is there any whitepapers/howtos/best practices on setting up multihomed BGP and DNS with BIND so I don't blow up the Internet. Thx Philip