> > Questions:
> > (1) It looks to me like if the ghost name is in our
> >    DNS RPZ zone, then that 'fixes' the problem for
> >    that name.   Is this correct?
> 
> Ghost domain could be redelegated to a new owner and become absolutely
> legal.

   Caveat Emptor -- if you buy a former TDSS (or someother evil) domain,
   that's just too bad.


> > (2) It also looks like restarting bind flushes the cache
> >    and that prevents the repopulation of the local cache
> >    with names which are ghosts (new different ghost names
> >    could, of course, be created).    Is this correct?

> AFAIK 'rndc flush' will do the same.

Thanks - we're doing a nightly restart for other reasons.


John
_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe 
from this list

bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to