Hidden Master

Chimento, Douglas Douglas.Chimento at FMR.COM
Wed Nov 7 05:23:27 UTC 2001



ok , hold on 
Here is what I am saying 
by putting in an unresolveable SOA MNAME this is what COULD happen...
The name server loading the zone with an unresolveable SOA MNAME
will NOT set the AA ( Authoritative Answer)  BIT in its response to queries.
I am not entirely sure about this but if this is the CASE would this be bad
implematation?

Thanks  

-----Original Message-----
From: Michael Kjorling [mailto:michael at kjorling.com]
Sent: Tuesday, November 06, 2001 5:52 PM
To: BIND-Users
Subject: RE: Hidden Master



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

The only criteria that determines whether a DNS server is authorative
for a zone or not is whether it has data about the zone itself, that
is, not obtained from any other source (except, in the case of a slave
server, from the master).

The SOA has nothing to do with that. As people have pointed out
numerous times throughout the time I've been reading this
newsgroup/mailing list, the SOA MNAME is only used for Dynamic
Updates (and even then sending to the name servers mentioned in the NS
records is an option).


Michael Kjörling


On Nov 6 2001 17:47 -0500, Chimento, Douglas wrote:

> no , because now the SOA is NOT resolvable, and that CAN"T be good.
> I will review the RFC'S to see if that is the case.
> But I think this means that the DNS server is not authoritative for the
zone
> and thus , no authoritative answers will occur.

- -- 
Michael Kjörling  --  Programmer/Network administrator  ^..^
PGP: 95f1 074d 336d f8f0 f297 6a5b 2aa3 7bfd 8a70 e33e   \/
Internet: michael at kjorling.com -- FidoNet: 2:204/254.4

"There is something to be said about not trying to be glamorous
and popular and cool. Just be real -- and life will be real."
(Joyce Sequichie Hifler, September 13 2001, www.hifler.com)
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: Public key is at http://michael.kjorling.com/contact/pgp.html

iD8DBQE76GmQKqN7/Ypw4z4RArfXAJ9hZxHmqlFIwOliZbeP+WMaA+f0mgCg53nk
QuiH66A6WGv34HVLAoDxMA0=
=Dh22
-----END PGP SIGNATURE-----




More information about the bind-users mailing list