Re: root and in-addr.arpa zone transfers

2009-09-10 Thread Michael Monnerie
On Freitag 11 September 2009 Joseph S D Yao wrote: > However, as M. Bortzmeyer has said, why do this? Faster queries after a named restart. Reverse lookups faster too, good for the spam filters. mfg zmi -- // Michael Monnerie, Ing.BSc- http://it-management.at // Tel: 0660 / 415 65

Re: cache server (slave)

2009-09-10 Thread Barry Margolin
In article , wrote: > In this configuration: > > options { > forward only; > forwarders { serverA ; } ; > } ; > > zone "example.com"{ > type slave; > file "zone.db"; > masters{ serverA; }; > }; > > 1- If I query to this server "example.com" (it's aut

Re: root and in-addr.arpa zone transfers

2009-09-10 Thread Joseph S D Yao
On Thu, Sep 10, 2009 at 11:27:27AM +0200, Michael Monnerie wrote: > On Mittwoch 09 September 2009 Rich Goodson wrote: > > zone "." { > > zone "arpa" { > > zone "in-addr.arpa" { > > Thank you Rich, and the others. Can anyone confirm that this is the way > to do? Or should I stay with ftp updates f

Re: root and in-addr.arpa zone transfers

2009-09-10 Thread Stephane Bortzmeyer
On Thu, Sep 10, 2009 at 12:31:45PM +0200, Michael Monnerie wrote a message of 70 lines which said: > that's a clear statement, so I'll keep the ftp transfers. It would be better to drop them completely and to return to ordinary DNS resolution. What's the point of mirroring the root? What if y

Re: root and in-addr.arpa zone transfers

2009-09-10 Thread Michael Monnerie
On Donnerstag 10 September 2009 Stephane Bortzmeyer wrote: > > right now I'm using scripts to download root.zone and in-addr.arpa > > from internic.net. But this is a non-standard way, > > But a secure way since the files on internic.net are PGP-signed. > > > I'd prefer to directly slave and zone-t

cache server (slave)

2009-09-10 Thread ric.castellani
In this configuration: options { forward only; forwarders { serverA ; } ; } ; zone "example.com"{ type slave; file "zone.db"; masters{ serverA; }; }; 1- If I query to this server "example.com" (it's authoritative for this domain) , server retrieves inf

Re: root and in-addr.arpa zone transfers

2009-09-10 Thread Michael Monnerie
On Mittwoch 09 September 2009 Rich Goodson wrote: > zone "." { > zone "arpa" { > zone "in-addr.arpa" { Thank you Rich, and the others. Can anyone confirm that this is the way to do? Or should I stay with ftp updates from the websites? Is there an "officially supported" or "recommended" way to do

Re: root and in-addr.arpa zone transfers

2009-09-10 Thread Stephane Bortzmeyer
On Wed, Sep 09, 2009 at 11:00:37AM -0400, Rick Dicaire wrote a message of 23 lines which said: > Interestingcan any of the root servers be used, or must it be just > these three? No root server operator (except may be ISC for F) ever promised to keep zone transfer open. It is not regarded

Re: root and in-addr.arpa zone transfers

2009-09-10 Thread Stephane Bortzmeyer
On Wed, Sep 09, 2009 at 08:23:23AM +0200, Michael Monnerie wrote a message of 54 lines which said: > right now I'm using scripts to download root.zone and in-addr.arpa > from internic.net. But this is a non-standard way, But a secure way since the files on internic.net are PGP-signed. > I'd

Re: root and in-addr.arpa zone transfers

2009-09-10 Thread omight
Apparently FreeBSD only slaves F.ROOT-SERVERS.NET in it's default configuration for bind: http://www.freebsd.org/cgi/cvsweb.cgi/src/etc/namedb/named.conf http://www.freebsd.org/cgi/cvsweb.cgi/src/etc/namedb/named.conf?rev=1.21.2.9;content-type=text%2Fplain /* Slaving the following zones from