[KLUG Members] Bind 9 exotic featues?

Ryan Matteson members@kalamazoolinux.org
22 Sep 2002 22:23:12 -0400


We use views for implementing split DNS with Bind 9. Views
allow you to carve up part of your namespace to clients 
based on ACLs. We are able to do everything with a single
instance (small setup). We are also using DNSSEC for zone
transfers between name servers. I was looking an
transaction signatures, but at this time, I don't think
any resolvers/clients know what to do with them :(

- Ryan

On Sun, 2002-09-22 at 21:51, Adam Williams wrote:
> I'm building Bind 9 with sdb to use an LDAP back end,  something I've
> been meaning to do for so long someone else up and did it. :)
> 
> So I was looking at the README that comes in the bind tar ball and it
> lists a bunch of features I've never heard of -
> 
> DNSSEC (signed zones)
> TSIG (signed DNS requests)
> Views
> 
> The documentation on these seems a bit scant.  Anyone used these?  
> 
> Cryptographically signing DNS queries and responses seems like a really
> nice feature, but do any clients support it?
> 
> -- 
> ----------------------------------------------------------------
> This message undoubtedly processed by the purely benevolent "US
> Department of Homeland Security",  but don't worry... they're
> only goal is to protect life, liberty and the pursuit of property.
> 
> _______________________________________________
> Members mailing list
> Members@kalamazoolinux.org
>