That is to say don't put the external servers in /etc/resolv.conf on your 
clients - only put the internal one there.  (Or the Windows equivalent setup 
should only see your internal DNS server.)

I would correct the prior post not to say "EVER" but rather "not directly".   
Often in an internal/external configuration only the "external" server queries 
the internet and the internal one forwards requests it gets to the external 
one.   It doesn't matter if the external server the internal DNS server is 
pointing to also has records for the domains because the internal server would 
already have answered for the domains it is authoritative for before trying to 
forward.   We have internal/external setup here for one domain and have no 
problems doing this.   (Oddly enough we also have views but that's another 
story...)







-----Original Message-----
From: bind-users-bounces+jlightner=water....@lists.isc.org 
[mailto:bind-users-bounces+jlightner=water....@lists.isc.org] On Behalf Of 
wbr...@e1b.org
Sent: Monday, August 20, 2012 8:24 AM
To: Dwayne Hottinger
Cc: bind-users@lists.isc.org
Subject: Re: 2 dns records for same server

Dwayne wrote on 08/19/2012 07:37:39 PM:
> My hosts get the ip's of all 3 dns
> servers when they recieve dhcp information.

I think this is the issue.  The internal clients should only point to the 
internal DNS server.  They should never be querying the DNS that returns the 
public IP addresses EVER!




Confidentiality Notice:
This electronic message and any attachments may contain confidential or 
privileged information, and is intended only for the individual or entity 
identified above as the addressee. If you are not the addressee (or the 
employee or agent responsible to deliver it to the addressee), or if this 
message has been addressed to you in error, you are hereby notified that you 
may not copy, forward, disclose or use any part of this message or any 
attachments. Please notify the sender immediately by return e-mail or telephone 
and delete this message from your system.
_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe 
from this list

bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users




Athena(r), Created for the Cause(tm)
Making a Difference in the Fight Against Breast Cancer

---------------------------------
CONFIDENTIALITY NOTICE: This e-mail may contain privileged or confidential 
information and is for the sole use of the intended recipient(s). If you are 
not the intended recipient, any disclosure, copying, distribution, or use of 
the contents of this information is prohibited and may be unlawful. If you have 
received this electronic transmission in error, please reply immediately to the 
sender that you have received the message in error, and delete it. Thank you.
----------------------------------

_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe 
from this list

bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to