DNS External/Internal Shadow Domains?

Cricket Liu cricket at acmebw.com
Fri Nov 12 20:56:38 UTC 1999


> Kevin was talking about EXTERNAL zones, though, so it is perfectly
> appropriate for the firewall to use the Internet roots!

What are you talking about?  Kevin was talking about an internal DNS
architecture based on internal root name servers that allowed you to
resolve both internal and Internet domain names.

Also, the model you describe, using zones of type forward, doesn't give you
iterative name resolution of internal domain names, which is part of what
Kevin was trying to achieve.

cricket

Acme Byte & Wire
cricket at acmebw.com
www.acmebw.com

Attend the next Internet Software Consortium/Acme Byte & Wire
DNS and BIND class!  See www.acmebw.com/training.htm for
the schedule and to register for upcoming classes.



More information about the bind-users mailing list