Re-delegation of a reverse zone

Barry Margolin barmar at genuity.net
Fri Sep 21 18:09:45 UTC 2001


In article <9ofteb$gjs at pub3.rc.vix.com>,
Chris Thomas  <cthomas at ucla.edu> wrote:
>I'm trying to redelegate a reverse zone and am having a problem.  Clearly 
>what I'm doing is wrong, but I don't quite understand why.

You can't redelegate a zone.

>UCLA has a /16 reverse zone delegated to them.  They in turn delegate /24 
>pieces to various departments, inlcuding me. This works fine. I have a 
>local group that is testing W2K servers, and am trying to hand off one of 
>my /24 to them.  The forward zone is a subset of one of my normal zones 
>and delegation works fine. The problem is the reverse zone. I put a 
>single NS record in the zone, pointing to their dns.  This works as 
>expected if one queries any dns except mine.  I'm guessing that the 
>problem is my dns is (or thinks it is) authoratative for the rev zone and 
>although it does return the NS record if asked, lookups stop there.  I'm 
>not sure I understand why querying some other dns causes the lookup to 
>recurse and work. The zone is 131.67.164.in-addr.arpa, and my dns is 
>128.97.62.3. 

The other DNS has cached the NS record that you returned, so from then on
it asks the other nameserver.  Your server is configured to be
authoritative for the zone.  "Authoritative" means that it knows everything
there is to know about the zone.

>I could fix this by having the parent (campus) dns changed to delegate 
>the rev zone directly, but I'd prefer to avoid this if possible (I can 
>make changes to my local dns quickly, and the W2K dns moves around.) Is 
>there a way to make this structure work?

Make your server a slave to the W2K server.

-- 
Barry Margolin, barmar at genuity.net
Genuity, Woburn, MA
*** DON'T SEND TECHNICAL QUESTIONS DIRECTLY TO ME, post them to newsgroups.
Please DON'T copy followups to me -- I'll assume it wasn't posted to the group.


More information about the bind-users mailing list