Re: Bind-Efficientip

2019-10-21 Thread -
We tested Bluecat, Infoblox, Solarwinds and EfficientIP solutions. In the end we went with EfficentIP for our IPAM solution. We don't run their DNS servers but do use their DHCP package on our own servers. When we reviewed the major players EfficientIP had the most versatility in how one could run

Re: Bind-Efficientip

2019-10-21 Thread Ondřej Surý
(This post is not related to EfficientIP specifically...) The ratio of security vulnerabilities found by “code inspection” is really low nowadays. I would even say it’s nonexistent. This doesn’t apply only to BIND 9, but also other open source projects. Most of the issues are found by using the

Re: Bind-Efficientip

2019-10-21 Thread Kevin Darcy
[ Classification Level: PUBLIC ] It's not clear to me from the marketing fluff whether EfficientIP is based on BIND or not. If it is, then consider that you have an open-source codebase, and the eternal debate is whether open source is inherently more secure or not. On the one side, is the "many

Re: Bind-Efficientip

2019-10-21 Thread Warren Kumari
On Sun, Oct 20, 2019 at 10:26 PM John W. Blue wrote: > > There is a ton of fluff on the EfficientIP website about carrier grade this > and carrier grade that. So it feels like to me that you are getting trapped > in the marketing goo when you really should be asking if an IPAM solution is > wh

Re: Confused about query_source(-v6) address statement

2019-10-21 Thread Tony Finch
Robert Senger via bind-users wrote: > > Which one is true? I only neet the source address to be set (both udp > and tcp, for source based routing of dns queries), not the port. TCP queries use the query-source address unless BROKEN_TCP_BIND_BEFORE_CONNECT is set ... https://gitlab.isc.org/isc-pr