Multiple Network Subnets within same Domain Name Zone

Saunders, Shawn SSaunders at mednet.ucla.edu
Wed Jun 23 15:00:27 UTC 2004


Is there any potential problems to the following scenario?

I am authoritative for a domain, say xyz.com that has some host addresses
outside my firewall on public IP's.  But I must also, have the hosts, inside
my firewall using Private Addresses 192.168.xxx.xxx within the domain
xyz.com, because of some legacy software that would require a major rewrite
to access these hosts, if we changed their naming structure.

I just find it odd, to have multiple networks, being resolved to the same
domain, and if I do this, there is no real way to do the reverse zones for
the domain, because it would entail having multiple reverse zones for the
same domain, and is that allowed?

Please anyone who has done this kind of thing, your advise would be greatly
appreciated.  We are currently running it like this, but using all public
addresses, with no reverse, but now part of this same domain structure is
going to be behind a firewall, that will not provide static IP mapping to
each internal address, for various other reasons, that don't really matter. 

I just need to make sure this conversion goes well.  Any ideas?

Sincerely,
 
Shawn Saunders
-----Original Message-----
From: Ladislav Vobr [mailto:lvobr at ies.etisalat.ae] 
Sent: Friday, May 14, 2004 11:50 PM
To: BIND Users Mailing List; bind9-users at isc.org
Subject: query throtlling in bind9

reposted again, anybody can clarify this?
..................


Can somebody shed some light on the way bind9 is retrying the
nameservers, in case of all the nameservers are unreachable for
particular domain.

Does it send for every single recursive request to this domain, several
retries to each of servers all the time? (this I believe was bind8
behavior, it sent for every recursive requests at least 3 retry packets
to each of the servers again and again)

or

Does it send only single request to each of the nameservers, and after
it times out it sends another one and again and again? (this would mean
that the will be just one packet in 90 seconds to each of unreachable
servers, regardless the traffic coming from the recursive clients be it
hundreds such a requests per second for example)

or

does it slow down with the time? (understanding that there is no reason
to retry with the same frequency, if the domain is down for let's say
one year:-)...

thanks for any response

Ladislav





----------------------------------------------------------
IMPORTANT WARNING:  This email (and any attachments) is only intended for the use of the person or entity to which it is addressed, and may contain information that is privileged and confidential.  You, the recipient, are obligated to maintain it in a safe, secure and confidential manner.  Unauthorized redisclosure or failure to maintain confidentiality may subject you to federal and state penalties. If you are not the intended recipient, please immediately notify us by telephone or return email, and delete this message from your computer.
----------------------------------------------------------


More information about the bind-users mailing list