[plug] Q for the DNS gurus

William Kenworthy billk at iinet.net.au
Sat Apr 9 08:35:15 WST 2005


I have just upgraded bind and see that gentoo recommends adding some
lines to named.conf to avoid the verisign A wildcard

 *      zone com IN { type delegation-only; };
 *      zone net IN { type delegation-only; };

I have named.conf set to forward (e.g., forwarders {} section) to the
upstream DNS only (ISP, University DNS etc)

Are these additions necessary in my configuration, if not, when should
the above be used.  I use bind as a pure caching DNS on a laptop, and
with some local zones added at home.

BillK

-- 
William Kenworthy <billk at iinet.net.au>
Home!




More information about the plug mailing list