"catch all" view?

phn at icke-reklam.ipsec.nu phn at icke-reklam.ipsec.nu
Sat Sep 21 11:44:48 UTC 2002


Brian Korver <briank at briank.com> wrote:


> It doesn't appear that we can define a "global" view, but I
> thought I'd ask anyways....

> I want to define two views:  "everyone" and "internals".
> The zones in "everyone" should be available to absolutely
> everyone, including the folks in "internals".  However,
> it appears that the first match-client prevails, such
> that any client will only see one view:  there are no
> unions of views.


You are correct. First match wins.

And that means that you will repeat zones common to all views ( they might
have differing properties, like "allow-recusion" etc)

If you feel this is complicated for large number of zones 
you might want to have perl write your config-file. Or
split your zones among a few nameservers, one set used for internal
ones ( where you don't need any authorative zones) and one set that
serves your athoritative zones ( used for everyone)


Zones does not solve everything, you will have to 
make a sensible choice where and how to use.



> Am I asking for too much?
If you don't ask you won't get answers :-)


> -brian
> briank at briank.com


-- 
Peter Håkanson         
        IPSec  Sverige      ( At Gothenburg Riverside )
           Sorry about my e-mail address, but i'm trying to keep spam out,
	   remove "icke-reklam" if you feel for mailing me. Thanx.


More information about the bind-users mailing list