Best Practices for Authoritative Servers

Kevin Darcy kcd at chrysler.com
Fri Feb 1 01:41:21 UTC 2008


Mark Andrews wrote:
>> Mark, that's really clever. Thanks!
>>
>> As for loops in the AXFR chain, I used to not see the value until a  
>> post from Kevin Darcy in this very forum. (I'll just refer readers to  
>> the list archive, since I can't find the original post.) Basically,  
>> what happens if the primary master goes down in the middle of  
>> processing zone transfer requests from two slaves, such that one slave  
>> has it and the other does not? Having the slaves use each other as  
>> backup master ensures that the updated zone makes it to the other slave.
>>     
>
> 	Sure it helps get the latest zone out there.  It also breaks
> 	the failsafe that was built into the design of the DNS.
> 	You don't want the SOA/IXFR query to the slave to reset the
> 	expiry timer.
>
> 	For the example about resetting the expire timer on change
> 	would be reasonable but not on every SOA/IXFR query that
> 	is answered by the slave.
>
> 	
I don't understand: why would answering SOA/IXFR reset a slave's expiry 
timer?

                                                                         
                        - Kevin


                                                                         
            - Kevin



More information about the bind-users mailing list