From owner-freebsd-questions Fri Jan 5 2:11:35 2001 From owner-freebsd-questions@FreeBSD.ORG Fri Jan 5 02:11:33 2001 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from dire.bris.ac.uk (dire.bris.ac.uk [137.222.10.60]) by hub.freebsd.org (Postfix) with ESMTP id 92BE537B400 for ; Fri, 5 Jan 2001 02:11:32 -0800 (PST) Received: from mail.ilrt.bris.ac.uk by dire.bris.ac.uk with SMTP-PRIV with ESMTP; Fri, 5 Jan 2001 10:11:27 +0000 Received: from cmjg (helo=localhost) by mail.ilrt.bris.ac.uk with local-esmtp (Exim 3.16 #1) id 14ETqJ-0000g0-00; Fri, 05 Jan 2001 10:11:27 +0000 Date: Fri, 5 Jan 2001 10:11:27 +0000 (GMT) From: Jan Grant To: Keith Walker Cc: freebsd-questions Subject: Re: Using BIND in a local, bogus network In-Reply-To: <01010418384900.00606@mars.walker.dom> Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: Jan Grant Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG On Thu, 4 Jan 2001, Keith Walker wrote: > I've been perusing all of the FAQ's, reading TFM's, answered a few of some > other folk's questions, now it's my turn to ask: > > I hope this is detailed enough. > > 1. I have a local network, consisting of three machines, one of which is a > FreeBSD machine running as a firewall/NAT thingie. > > 2. The firewall is connected to the net through a dial up modem. > > 3. The LAN is set up on 192.168.0.x/24 > > What I want to do is have a bogus domain, like "family.bog" (a new TLD > invented just for bogus sites like mine :-), with the other machines on the > LAN having names such as "pepsi.family.bog" and "coke.family.bog". > > In my perfect world, the firewall would have a named running that would be a > domain master for the bogus network, would cache "real" addresses, and just > generally, DTRT. > > I've had *some* success with this, but I cannot get the nameserver to quit > forcing dial-outs, keeping the modem connected almost 24/7. > > Ok, so: > > 1) How come the named program keeps dialing out? > 2) How can I prevent this? > 3) Are nameservers designed to run only on full time systems? > 4) Is there a better way of doing this? A little more detail: for instance, does your NS also think it's authoritative for the 0.168.192.in-addr.arpa. domain? jan PS. If that doesn't work you could always try 'faking' a root NS :-) -- jan grant, ILRT, University of Bristol. http://www.ilrt.bris.ac.uk/ Tel +44(0)117 9287163 Fax +44 (0)117 9287112 RFC822 jan.grant@bris.ac.uk Goedel would be proud - I'm both inconsistent _and_ incomplete. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message