[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: BIND9 transferring zones



On Thu, Mar 13, 2003 at 09:50:43AM +0000, Warwick Brown wrote:
> On Thursday 13 March 2003 8:52 am, Tomās Núņez Lirola wrote:
> > Hi
> > I've heard about disable zone transferring in BIND. I thought it is a good
> > idea, in order to hide a little more your net (obviously you can query my
> > DNS for all possible names and get the same information), but also I
> > thought that if BIND transfer zones by default, it has some reason.
> >
> > So can anyone comment inconvenients/advantages of disabling transfer DNS
> > zones?

<SNIP>

> disadvantages:
> 
> cannot transfer the zone to another system when backing up zone files using 
> dig or nslookup 

You can of course just allow a handful of servers to do transfers, i.e.
off-site DNS backup etc.


-simonm (E: simon@asidua.com W: +44 28 9072 5060 M: +44 7710 836915)
One By One The Penguins Steal My Sanity



Reply to: