Interesting behavior with wildcard domains

Mark Andrews marka at
Tue Feb 23 23:30:18 UTC 2016

> Hi BIND,
> Ive encountered (quite by accident) an interesting behavior in BIND with
> wildcard domains:
> The relevant configuration is a zone; e.g., with what Ill call a
> second level wildcard host, e.g. * A in that zone.
> (as opposed to what might be considered the more usual wildcard host
> record of *
> returns A as expected.
> However, a query for returns NOERR with zero results, when I
> would expect a NXDOMAIN.

Why?  If * exists then, and com all exist.

> Anyone know if the NOERR with zero results is the expected / correct
> behavior?

It is the expected behaviour.

> Thanks in advance,
> Mathew Eis
> Northern Arizona University
> Information Technology Services

