open recursion/cache problem

Barry Margolin barmar at alum.mit.edu
Thu Aug 24 21:44:18 UTC 2006


In article <ecl0hm$30gd$1 at sf1.isc.org>,
 Jeffrey Williams <jeff at sailorfej.net> wrote:

> Now I did see the a forum thread that said that the allow-recursion 
> {acl} option will not stop the nameserver from answering queries for 
> entries already cached, short of turning off caching, is their any other 
> way to restrict external queries for domains I not authoritative for? 
> even if they are cached?

I'm pretty sure the answer to your question was in that thread.  Instead 
of allow-recursion, use allow-query.  Then in all the public zone 
definitions, add "allow-query{any;};"

-- 
Barry Margolin, barmar at alum.mit.edu
Arlington, MA
*** PLEASE post questions in newsgroups, not directly to me ***
*** PLEASE don't copy me on replies, I'll read them in the group ***



More information about the bind-users mailing list