From owner-freebsd-current@FreeBSD.ORG Tue Oct 1 12:09:18 2013 Return-Path: Delivered-To: freebsd-current@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTP id 257F372B; Tue, 1 Oct 2013 12:09:18 +0000 (UTC) (envelope-from lev@FreeBSD.org) Received: from onlyone.friendlyhosting.spb.ru (onlyone.friendlyhosting.spb.ru [IPv6:2a01:4f8:131:60a2::2]) by mx1.freebsd.org (Postfix) with ESMTP id DCC6325BB; Tue, 1 Oct 2013 12:09:17 +0000 (UTC) Received: from lion.home.serebryakov.spb.ru (unknown [IPv6:2001:470:923f:1:2965:2f12:355e:43ee]) (Authenticated sender: lev@serebryakov.spb.ru) by onlyone.friendlyhosting.spb.ru (Postfix) with ESMTPSA id 9EC804AC57; Tue, 1 Oct 2013 16:09:15 +0400 (MSK) Date: Tue, 1 Oct 2013 16:09:11 +0400 From: Lev Serebryakov Organization: FreeBSD X-Priority: 3 (Normal) Message-ID: <1505729749.20131001160911@serebryakov.spb.ru> To: Dimitry Andric Subject: Re: [CURRENT] unbound: zonefiles? In-Reply-To: <34A20ABE-8490-44E4-9DC5-74B686B09AEC@FreeBSD.org> References: <20130926112648.00422d7a@thor.walstatt.dyndns.org> <1380544116.4383.28120017.649D5F99@webmail.messagingengine.com> <34A20ABE-8490-44E4-9DC5-74B686B09AEC@FreeBSD.org> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable Cc: freebsd-current@freebsd.org X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list Reply-To: lev@FreeBSD.org List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 01 Oct 2013 12:09:18 -0000 Hello, Dimitry. You wrote 30 =D1=81=D0=B5=D0=BD=D1=82=D1=8F=D0=B1=D1=80=D1=8F 2013 =D0=B3.,= 17:53:15: DA> Yes, and there is the rub for most 'SOHO' users, who do not win anything DA> by separating these roles. In such cases, setting up a separate IP DA> and/or port just to split up authoritative and recursive DNS is rather DA> inconvenient... Yep, and nsd doesn't support views, so sometimes you need THREE daemons: outer world view of LAN (only several hosts from DMZ are published), inner view of LAN (all host) and recursion for LAN... BIND solves all three tasks in one instance. --=20 // Black Lion AKA Lev Serebryakov