> If you had a choice between having the DNS outside the firewall or behind
> the firewall which one would you pick?  This controversy is creating turmoil
> in our office. One of the engineers wants the DNS in the DMZ and the other
> would like to have it inside. What are the pros and cons of both sides?

[Still catching up on some old mail.  Saw no answer to this one.]

Both, of course.  External DNS serves external names only.  Internal
DNS serves internal names only and forwards to external, or it serves
both ... there are variations on the theme of "split DNS".

