Dynamic replies from bind

Jim Reid jim at rfc1035.com
Tue Aug 5 18:22:34 UTC 2003


>>>>> "Neil" == Neil Ferguson <bluegremlin at netvis.co.uk> writes:

    >> I'm running bind 9.22 and I want it to respond differently
    >> based on the ip thats quering it, so like if an ip in
    >> 192.168.1.x/24 queried it it'd return somethign different than
    >> if 192.168.2.x/24 queried it?

    Neil> Sadly I'm no DNS expert, but I thought I may as well suggest
    Neil> a possible alternative solution.  If you have the resources,
    Neil> could you run two copies of BIND on non standard ports?
    Neil> Assuming you have it available, you could then use iptables
    Neil> to port forward incoming requests to the appropriate port
    Neil> based on their source address.  That way you can forward
    Neil> 192.168.1.x/24 to port 52 which hands out one set of
    Neil> addresses, and 192.168.2.x/25 to port 54 (which hands out
    Neil> another).

    Neil> That might be a stupid suggestion (can you tell I'm a n00b),
    Neil> but it sounds good to me - any thoughts anybody?

It is a stupid suggestion. The original poster should look into the
views mechanism in BIND9.


More information about the bind-users mailing list