nixCraft Linux Forum

nixCraft

Linux / UNIX Tech Support Forum

Authoritative and Recursive DNS via Bind 9

This is a discussion on Authoritative and Recursive DNS via Bind 9 within the Domain Name Server forums, part of the Mastering Servers category; I am planning a project for a client that is going to require both authoritive, and recursive dns. Authoritive so ...


Go Back   nixCraft Linux Forum > Mastering Servers > Domain Name Server

Linux answers from nixCraft.


Domain Name Server Discussion on domain name server including BIND and other servers.

Reply

 

LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 05-02-2010, 05:08 AM
Junior Member
User
 
Join Date: Jan 2010
OS: CentOS
Posts: 2
Thanks: 1
Thanked 0 Times in 0 Posts
Rep Power: 0
cboggio is on a distinguished road
Cool Authoritative and Recursive DNS via Bind 9

I am planning a project for a client that is going to require both authoritive, and recursive dns. Authoritive so that they can host DNS for their clients, and recursive so that their clients CPE can resolve locally. I intend to lock down recursion to the customer's subnets to prevent cache poisoning and such. I'm using BIND 9, and Caching-Nameserver on CentOS 5.4, and My question is as follows:

Can this be done reliably to begin with, or should i find another way ?

and

If it can be done, is BIND using the named.caching-nameserver.conf for the caching server, and named.conf for the authoritative, or is it using named.conf for both ?

Cheers, and thanks for the help
Reply With Quote
  #2 (permalink)  
Old 05-02-2010, 10:12 AM
nixcraft's Avatar
Never say die
User
 
Join Date: Jan 2005
Location: BIOS
OS: RHEL
Scripting language: Bash and Python
Posts: 2,710
Thanks: 11
Thanked 246 Times in 184 Posts
Rep Power: 10
nixcraft has a reputation beyond repute nixcraft has a reputation beyond repute nixcraft has a reputation beyond repute nixcraft has a reputation beyond repute nixcraft has a reputation beyond repute nixcraft has a reputation beyond repute nixcraft has a reputation beyond repute nixcraft has a reputation beyond repute nixcraft has a reputation beyond repute nixcraft has a reputation beyond repute nixcraft has a reputation beyond repute
Default

Both can be done using named.conf. Use acl to restrict recursive dns to lan clients or subnet as per your requirements. Another possibility is to use two virtual ips with two config files, one for public domain (authoritative) and another for recursive dns server.
__________________
Vivek Gite
Linux Evangelist
Be proud RHEL user, and let the world know about your enterprise choices! Join RedHat user group.
Always use CODE tags for posting system output and commands!
Do you run a Linux? Let's face it, you need help
Reply With Quote
The Following User Says Thank You to nixcraft For This Useful Post:
cboggio (06-02-2010)
  #3 (permalink)  
Old 06-02-2010, 08:35 PM
Junior Member
User
 
Join Date: Jan 2010
OS: CentOS
Posts: 2
Thanks: 1
Thanked 0 Times in 0 Posts
Rep Power: 0
cboggio is on a distinguished road
Thumbs up Authoritative and Recursive DNS via Bind 9

Thank you very much for your thoughts. I very much value your input. I would like to post my named.conf as I develop it, just in case i have problems, or things don't behave the way i expect them to.

Thanks Again
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)

 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads

Thread Thread Starter Forum Replies Last Post
Bind 9 configuration chimu Domain Name Server 1 06-10-2009 05:29 PM
Bind start problem yogeshkk2 Domain Name Server 3 12-06-2009 03:10 PM
Setting Samba to Bind to an ADS Domain kevv.mai Getting started tutorials 0 20-04-2008 01:47 AM
BIND Name resolution kasimani Linux software 1 06-10-2006 12:42 AM
BIND 9 and Query-Source Ashish Pathak Linux software 2 07-02-2005 12:42 PM


All times are GMT +5.5. The time now is 04:20 PM.


Powered by vBulletin® Version 3.8.5 - Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.3.2
©2005-2010 nixCraft. All rights reserved

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38