Mark Andrews schrieb:
Are there possible other ways of detecting "default-local-zones" (other than looking at the serial)?

        There is no way to automatically detect this.  Note
        default-local-zones specifically excludes names tlds.

        Having a local copy of the root zone is a much better
        way to deal with queries to the root.

        Mark

This would be a good solution for DNS literate administrators, however I mostly deal with people that are part-time DNS admins and having them manage an internal root zone would probably do more harm than good.

However I found that there is a way to detect these kind of zones, that is to check for the SOA RNAME "nobody.invalid", as this is already defined in the draft (sometimes it is hard to see the obvious) and can work in the same way as an defined SOA serial.

Carsten
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to