xfer question

Joseph S D Yao jsdy at cospo.osis.gov
Thu Jul 6 19:25:04 UTC 2000


On Thu, Jul 06, 2000 at 11:40:24AM -0400, Cardinal Christopher wrote:
> If my name servers are authoritative for a class B, say
> 226.165.in-addr-arpa, but we delegate about 10 subnets to subdomains (for
> which we are the slave,) should another name server with our permission be
> able to transfer the zone 226.165.in-addr.arpa from us?
> 
> Right now they can transfer with no problems, say 4.226.165 and
> 10.226.165----in other words individual subnets, but not the whole
> 226.165.in-addr.arpa at one time.
> 
> My named.conf does not have a zone 226.165.in-addr.arpa specified, rather
> each individual subnet of that zone is specified, like
> 4.226.165.in-addr.arpa, etc (but not all as we don't fully utilize all
> possible subnets.) Note error below:

OK, then it's NOT authoritative for that zone.

Just for neatness, you should have such a zone, delegating all the
subnet zones.

If you had such a zone, then another name server would be able to
transfer the entire zone.  It would then have a handful of NS records
telling it where to find the subnet zones.  It would not have all the
subnet zones.

The exception is that under BIND 8, if you have child zones on the same
server as their parent zone, a transfer of the parent zone will bring
the child zones along with it.  Although this is often useful, I
believe that it is technically incorrect, and further believe that it
will be fixed in BIND 9.

-- 
Joe Yao				jsdy at cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.



More information about the bind-users mailing list