From owner-freebsd-isp Sat Feb 12 15: 3:40 2000 Delivered-To: freebsd-isp@freebsd.org Received: from ns.internet.dk (ns.internet.dk [194.19.140.1]) by builder.freebsd.org (Postfix) with ESMTP id 5FB254061 for ; Sat, 12 Feb 2000 15:03:31 -0800 (PST) Received: (from uucp@localhost) by ns.internet.dk (8.9.2/8.9.3) with UUCP id AAA66792 for freebsd-isp@FreeBSD.ORG; Sun, 13 Feb 2000 00:03:31 +0100 (CET) (envelope-from leifn@neland.dk) Received: from gina (gina.neland.dk [192.168.0.14]) by arnold.neland.dk (8.9.3/8.9.3) with SMTP id XAA06751; Sat, 12 Feb 2000 23:57:27 +0100 (CET) (envelope-from leifn@neland.dk) Message-ID: <03de01bf75ac$918991c0$0e00a8c0@neland.dk> Reply-To: "Leif Neland" From: "Leif Neland" To: "wellsian" , "James Wyatt" Cc: "Gene Harris" , "David A. Gobeille" , References: Subject: Re: DSL firewall and DNS Date: Sat, 12 Feb 2000 23:56:56 +0100 MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 5.00.2919.6600 X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2919.6600 Sender: owner-freebsd-isp@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org You won't be misrepresenting the primary/secondary relationship, as you = are never presenting this to the world anyway. Primary/secondary is a purely administatively distinction, which has = nothing to do with which nameservers you present to the world. The = primary is just the one you are maintaning your zone file on; the world = has no way of knowing (or at least cares not about) which one it is. You could even have only the secondaries listed and online, as long as = your primary is online once in a while to keep the secondaries knowing = the zone is still valid. =20 > This is exactly what I've wanted to do for a couple installations, but = I > haven't felt secure about misrepresenting the primary/secondary > relationship. Are there any technical reasons not to do what James > suggests? >=20 > Thanks, > Dave >=20 > On Sat, 12 Feb 2000, James Wyatt wrote: >=20 > > On Sat, 12 Feb 2000, Gene Harris answered David A. Gobeille's = DSL/DNS > > questions with: > > [ ... ] > > > Now that I have a better idea about your service, you'll be > > > a lot better off letting the isp be your 2nd DNS server. > > > That way, if your machine blows up, folks can still view > > > your web site, send you email, etc. > >=20 > > Or have your ISP secondary from your primary DNS server on your DSL = and > > put their servers on the InterNic records... You will also have = fewer > > folks trying to hack your primary DNS server when it isn't listed. = 8{) > >=20 > > It lets you update easily while providing more reliable and faster = DNS > > host. (Not to knock your host, but the link adds a hop or two, a = dozen or > > so mS, and more pieces) Always reduce the path to DNS servers... - = Jy@ >=20 >=20 >=20 > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-isp" in the body of the message >=20 To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-isp" in the body of the message