Internal and External DNS servers

Joseph S D Yao jsdy at cospo.osis.gov
Mon Aug 2 20:54:56 UTC 1999


What you have done is mostly "normal" DNS, with one exception.

You can NOT have two different servers, with different information,
claiming to be authoritative for the same zone.  Your resolver can NOT
go "shopping out" for answers!  Once the DNS resolution process hits a
server that is authoritative, that is IT. It's DONE.  It's FOUND the
server that is THE server, the ONE server, the AUTHORITATIVE server.
That's what AUTHORITATIVE means.

Consider having an internal.foo.com domain, inside the network, and an
external.foo.com domain (or just foo.com) outside the network.  Then
internal references to mordechai.internal.foo.com get resolved by the
internal name server, while references to baal.external.foo.com get
passed outside.

;-)

--
Joe Yao				jsdy at cospo.osis.gov - Joseph S. D. Yao
COSPO/OSIS Computer Support					EMT-B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.


More information about the bind-users mailing list