name resolution on private remote LAN

Simon Waters Simon at wretched.demon.co.uk
Fri Sep 7 14:57:16 UTC 2001


Subba Rao wrote:
> 
> I am trying to setup a IPSec network between my private LAN and work LAN.
> Currently, I use a local cache and my ISP's DNS server to resolve the external
> names. How do I configure DNS to resolve the host name on the work LAN?

One common Unix approach is to overwrite /etc/resolv.conf when
the IPSec tunnel is created, and rewrite it when the tunnel is
taken down. I don't like it, but it is easy to understand, and
troubleshoot.

Just one always has to troubleshoot it as there always seems to
be a way to bring a VPN tunnel down without removing the file.
"trap" is your friend.

If the caching DNS is really needed, you could stop it, and
start one with a different named.conf in smilar fashion.

I would help to know a bit more about your client set up -
number of machines, Unix or Microsoft.


More information about the bind-users mailing list