> > Questions: > > (1) It looks to me like if the ghost name is in our > > DNS RPZ zone, then that 'fixes' the problem for > > that name. Is this correct? > > Ghost domain could be redelegated to a new owner and become absolutely > legal.
Caveat Emptor -- if you buy a former TDSS (or someother evil) domain, that's just too bad. > > (2) It also looks like restarting bind flushes the cache > > and that prevents the repopulation of the local cache > > with names which are ghosts (new different ghost names > > could, of course, be created). Is this correct? > AFAIK 'rndc flush' will do the same. Thanks - we're doing a nightly restart for other reasons. John _______________________________________________ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users