Access restriction from zone files.

Kevin Darcy kcd at daimlerchrysler.com
Tue Jan 15 23:32:39 UTC 2002


No, that's not necessary. You could create a zone with the name
"pimsdbs.hillsboroughcounty.org", delegated directly from the
"hillsboroughcounty.org" zone. Then this subzone could have an A record right
at its apex, just like "cnn.com", "chrysler.com", etc. exist.


- Kevin

Brett Simpson wrote:

> So then I would have another zone called internal.hillsboroughcounty.org =
> with pimsdbs.internal.hillsboroughcounty.org?
>
> >>> Pete Ehlke <pde at ehlke.net> 01/15/02 05:19PM >>>
> * Brett Simpson <Simpsonb at hillsboroughcounty.org> said, on [020115 14:15]:
> >=20
> > I want everyone to be able to resolve http://www.hillsboroughcounty.org =
> =3D
> > but for http://pimsdbs.hillsboroughcounty.org I only want a select group =
> =3D
> > of clients to be able to resolve this name.
> >=20
> Create pimsdbs.hillsboroughcounty.org as a subdomain rather than a
> simple A record, and then restrict queries to that subdomain using views
> (if you're running bind 9) or the allow-query{} option.
>
> -Pete



More information about the bind-users mailing list