Need secure_zone, where did it go (bind 8)

Barry Margolin barmar at bbnplanet.com
Fri Oct 29 22:24:42 UTC 1999


   Date: Sat, 30 Oct 1999 00:06:44 +0200
   From: Jim Reid <jim at mpn.cp.philips.com>

   >>>>> "Barry" == Barry Margolin <barmar at bbnplanet.com> writes:

       Barry> Reid <jim at mpn.cp.philips.com> wrote:
       >> warp 8.] You can get similar functionality from BIND8's
       >> allow-query and allow-transfer clauses in named.conf's
       >> options{} statement.

       Barry> One significant difference between secure_zone and
       Barry> allow-query is that secure_zone was copied in zone
       Barry> transfers.  Thus, the master server administrator could
       Barry> declare a zone to be secure, and this would propagate to
       Barry> the slave servers automatically.

   True, but this would only work if the slave servers were also running
   a version of BIND4 that had SECURE_ZONE support compiled in to them.
   Then again, allow-query only works if all the name servers for a zone
   support that too and configure it into their named.conf files.

IIRC, SECURE_ZONE support was enabled by default.  So the slave server
operators would have had to go out of their way to take the feature out.

-- 
Barry Margolin, barmar at bbnplanet.com
GTE Internetworking, Powered by BBN, Burlington, MA


More information about the bind-users mailing list