Re: BIND9 transferring zones
On Thu, Mar 13, 2003 at 09:50:43AM +0000, Warwick Brown wrote:
> On Thursday 13 March 2003 8:52 am, Tomās Núņez Lirola wrote:
> > Hi
> > I've heard about disable zone transferring in BIND. I thought it is a good
> > idea, in order to hide a little more your net (obviously you can query my
> > DNS for all possible names and get the same information), but also I
> > thought that if BIND transfer zones by default, it has some reason.
> >
> > So can anyone comment inconvenients/advantages of disabling transfer DNS
> > zones?
<SNIP>
> disadvantages:
>
> cannot transfer the zone to another system when backing up zone files using
> dig or nslookup
You can of course just allow a handful of servers to do transfers, i.e.
off-site DNS backup etc.
-simonm (E: simon@asidua.com W: +44 28 9072 5060 M: +44 7710 836915)
One By One The Penguins Steal My Sanity
Reply to: