Dynamic replies from bind
Jim Reid
jim at rfc1035.com
Tue Aug 5 18:22:34 UTC 2003
>>>>> "Neil" == Neil Ferguson <bluegremlin at netvis.co.uk> writes:
>> I'm running bind 9.22 and I want it to respond differently
>> based on the ip thats quering it, so like if an ip in
>> 192.168.1.x/24 queried it it'd return somethign different than
>> if 192.168.2.x/24 queried it?
Neil> Sadly I'm no DNS expert, but I thought I may as well suggest
Neil> a possible alternative solution. If you have the resources,
Neil> could you run two copies of BIND on non standard ports?
Neil> Assuming you have it available, you could then use iptables
Neil> to port forward incoming requests to the appropriate port
Neil> based on their source address. That way you can forward
Neil> 192.168.1.x/24 to port 52 which hands out one set of
Neil> addresses, and 192.168.2.x/25 to port 54 (which hands out
Neil> another).
Neil> That might be a stupid suggestion (can you tell I'm a n00b),
Neil> but it sounds good to me - any thoughts anybody?
It is a stupid suggestion. The original poster should look into the
views mechanism in BIND9.
More information about the bind-users
mailing list