From owner-freebsd-questions@FreeBSD.ORG Tue Mar 17 23:28:57 2015 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 4E4CB7E0 for ; Tue, 17 Mar 2015 23:28:57 +0000 (UTC) Received: from mail-qg0-x232.google.com (mail-qg0-x232.google.com [IPv6:2607:f8b0:400d:c04::232]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id F2221F58 for ; Tue, 17 Mar 2015 23:28:56 +0000 (UTC) Received: by qgh62 with SMTP id 62so23476493qgh.1 for ; Tue, 17 Mar 2015 16:28:56 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=date:from:to:subject:message-id:in-reply-to:references:mime-version :content-type; bh=Hwm4uJAd4HVboTY6CByjfgiu5WXjmCrckOPNrmMuurg=; b=wt31KTeOVFXgH4vvkalDy5/vcamUVP/nPZ+IjtCp8PN2bc5Nj6cO7YX8+YvB9peWJh sja/nIDeYwumIjxaMU7ae8qxp2ug7dSol4oFZt9lTM4oLgpvH6CIU27nshhthjP/YT4n aMA7IpsKz/giwFaY/apHesPAmQBINi3HOcG5XzAi7M+g1LeY52fMO7mS9aTPBKX2wMaL 7zINqoTDnHrVWQzWyPNkOG+3aEJ9TMPf7B7RZ5Koe1ILOAEwy3UsWAgAewKVDCwUlxCj cYGNhHg85COVZHErPXgcryJo2gU/3YvScndA4b5iIyK+nEbEYi0nQqfg2qhqQYP10V9K WMkg== X-Received: by 10.140.100.181 with SMTP id s50mr6601862qge.1.1426634936131; Tue, 17 Mar 2015 16:28:56 -0700 (PDT) Received: from lapsdeb (207-172-207-96.c3-0.upd-ubr1.trpr-upd.pa.cable.rcn.com. [207.172.207.96]) by mx.google.com with ESMTPSA id z143sm10643428qhd.40.2015.03.17.16.28.55 for (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 17 Mar 2015 16:28:55 -0700 (PDT) Date: Tue, 17 Mar 2015 19:28:47 -0400 From: Stephen R Guglielmo To: freebsd-questions@freebsd.org Subject: Re: FreeBSD recommends not using base unbound for an authoritative server Message-ID: <20150317192847.5b39d1c8@lapsdeb> In-Reply-To: References: X-Mailer: Claws Mail 3.11.1 (GTK+ 2.24.25; x86_64-pc-linux-gnu) MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha512; boundary="Sig_/roZqb2L4AvujN/jt+fzWjRY"; protocol="application/pgp-signature" X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 17 Mar 2015 23:28:57 -0000 --Sig_/roZqb2L4AvujN/jt+fzWjRY Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: quoted-printable On Tue, 17 Mar 2015 16:25:09 -0700 Chris Stankevitz wrote: > For the same reasons, I'd like to run the base system's unbound to > authoritatively host my DNS... but FreeBSD is discouraging me in > section 29.7.2 of the manual. Why the discouragement? Unbound is only a validating caching resolver. It *can't* be authoritative. --Sig_/roZqb2L4AvujN/jt+fzWjRY Content-Type: application/pgp-signature Content-Description: OpenPGP digital signature -----BEGIN PGP SIGNATURE----- iQIcBAEBCgAGBQJVCLi2AAoJEA8nk/BQet6Lwi8P/jUNMEcKc7LViap07mQOBKvO LuD+URZ0hl2mYX/BbfXBUxfrAf2sRMdukzQVD50fmp2h2bTSPORrr5NoZ4vMjr6L R3YcUYTKtWoRS4iYp2MIODZv5/Eekt4sAHMvSbfLRfiQ6yIEwrdxNogzlM34rHn2 q2+iri+jPPked9cWtg0LJGOB50mf5Iq5bednwrqzEX3/ZKsFWbLCqSgFISCHiwxU 2a56NbS68JS6FhDw4o88bjf4AAD7YUw/FZoBpL562MdRlsGkVozQO/6S4g5s/gIh +6NQNwq2/uPzGI1N3tXF/naQUGF+WF5htYJe3k6jW7yFS8PWB5dV/ADMk0M/S6pC ef890aXKsnPZ2NCILivq0AlhZSp7XxJ4SQ1oizx/xqJnpPHMJglx9IMGUi7bJphl kJOedRcaY9QhM8MhqYtid7zKgBJQWxHl1P6jFUu/djeV6aQCIcF8xfco8rHz9zrW 0wY3c0EUZde286Cv7uRq0SgIpS9+noBZiSRWOA5/IoehGAZIZnyv0ulHO9iSpNhN ltxFCzySQScVDgeh+CO2CHRTPCYCOk1bJr/VaKbGw1bKHMEhX6otjZWH/0u9XhXK b8GK/62GRjoEniLyNERVhWvghM17DU05m3Vew98PfVUtWVkxR7wK/Jzr+afWImOK HSe3A5dzFuwakyBJSqlm =vLDE -----END PGP SIGNATURE----- --Sig_/roZqb2L4AvujN/jt+fzWjRY--