Primary DNS with private IP?

phn at icke-reklam.ipsec.nu phn at icke-reklam.ipsec.nu
Wed Sep 4 18:23:11 UTC 2002


Elmar Hoenig <the.guardian at gmx.net> wrote:

> Hi,

> is it possible to set up a primary DNS Server behind a firewall in a
> DMZ, where I don't have official IP addresses but only a private
> address like 172.16.10.1/24?

Yes, but you will need to have a "static NAT" setup in your firewall
to cope for packets coming from Internet.  
And for all Internet hosts your DNS server will seem to have the address
of the firewalls NAT address.

> I will be using Linux with Bind9.

> Please, let us not discuss about sense or nonsense of this solution; I
> know it is not nice.

It might be less ugly if you run bind on the firewall itself.

> Thankx, Elmar..


-- 
Peter Håkanson         
        IPSec  Sverige      ( At Gothenburg Riverside )
           Sorry about my e-mail address, but i'm trying to keep spam out,
	   remove "icke-reklam" if you feel for mailing me. Thanx.


More information about the bind-users mailing list