"catch all" view?
phn at icke-reklam.ipsec.nu
phn at icke-reklam.ipsec.nu
Sat Sep 21 11:44:48 UTC 2002
Brian Korver <briank at briank.com> wrote:
> It doesn't appear that we can define a "global" view, but I
> thought I'd ask anyways....
> I want to define two views: "everyone" and "internals".
> The zones in "everyone" should be available to absolutely
> everyone, including the folks in "internals". However,
> it appears that the first match-client prevails, such
> that any client will only see one view: there are no
> unions of views.
You are correct. First match wins.
And that means that you will repeat zones common to all views ( they might
have differing properties, like "allow-recusion" etc)
If you feel this is complicated for large number of zones
you might want to have perl write your config-file. Or
split your zones among a few nameservers, one set used for internal
ones ( where you don't need any authorative zones) and one set that
serves your athoritative zones ( used for everyone)
Zones does not solve everything, you will have to
make a sensible choice where and how to use.
> Am I asking for too much?
If you don't ask you won't get answers :-)
> -brian
> briank at briank.com
--
Peter Håkanson
IPSec Sverige ( At Gothenburg Riverside )
Sorry about my e-mail address, but i'm trying to keep spam out,
remove "icke-reklam" if you feel for mailing me. Thanx.
More information about the bind-users
mailing list