Cache leak!

phn at icke-reklam.ipsec.nu phn at icke-reklam.ipsec.nu
Fri Jul 23 14:34:05 UTC 2004


Fredrik Håkansson <fredrik at spamme.younix.se> wrote:
> Hello!

> If i set up a Bind 9 name server with two views. One view where the
> name server is authoritative for our Internet DNS zones and doesn't allow
> recursive queries, and is used by Internet name-servers to resolve our DNS
> data. The other view is also authoritative for our Internet DNS zones but
> allows recursive queries and is used by resolvers on our DMZ.

> If i do this will the authoritative view used by Internet name-servers be
> subject to cache poisoning? Or in other words does two views share cache?? 

No. The data areas is distinct ( unless bugs creep in)






-- 
Peter Håkanson         
        IPSec  Sverige      ( At Gothenburg Riverside )
           Sorry about my e-mail address, but i'm trying to keep spam out,
	   remove "icke-reklam" if you feel for mailing me. Thanx.


More information about the bind-users mailing list