Zone hints for VPN environments

Grant Taylor gtaylor at
Mon Feb 15 19:03:53 UTC 2016

On 02/15/2016 03:58 AM, Tony Finch wrote:
> You very nearly have the right idea, but you are trying to use the wrong
> zone type. There are a few options that can work in your situation:

In addition to what Tony said,

Is there a reason you don't consider having BIND slave the 
"" & "" zones?

I think this would help performance and add (some) fault tolerance to 
your configuration.

Similarly, I'd have the MS-DNS servers slave the BIND zones 
"" & "" if possible.

Grant. . . .
unix || die

More information about the bind-users mailing list