From owner-freebsd-isp@FreeBSD.ORG Mon Nov 17 07:20:25 2003 Return-Path: Delivered-To: freebsd-isp@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id B661816A4CE for ; Mon, 17 Nov 2003 07:20:25 -0800 (PST) Received: from ptb-mailc04.plus.net (ptb-mailc04.plus.net [212.159.14.210]) by mx1.FreeBSD.org (Postfix) with ESMTP id A987743FCB for ; Mon, 17 Nov 2003 07:20:24 -0800 (PST) (envelope-from simong@desktop-guardian.com) Received: from [81.174.227.186] (helo=desktop-guardian.com) by ptb-mailc04.plus.net with smtp (Exim 4.12) id 1ALlAt-000Jhg-00 for freebsd-isp@freebsd.org; Mon, 17 Nov 2003 15:20:23 +0000 Received: (qmail 62941 invoked by uid 1006); 17 Nov 2003 15:20:59 -0000 Received: from simong@desktop-guardian.com by dtg25 by uid 82 with qmail-scanner-1.16 (clamscan: 0.54. spamassassin: 2.55. Clear:. Processed in 11.21497 secs); 17 Nov 2003 15:20:59 -0000 Received: from unknown (HELO dtg17) (192.168.0.17) by 192.168.0.25 with SMTP; 17 Nov 2003 15:20:40 -0000 Message-ID: <0b3a01c3ad1e$2224d850$1100a8c0@dtg17> From: "Simon Gray" To: "Vahric MUHTARYAN" References: <029b01c3ad14$5e53b080$110d3ad4@VAHOXP> Date: Mon, 17 Nov 2003 15:19:00 -0000 MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 6.00.2800.1158 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165 cc: freebsd-isp@freebsd.org Subject: Re: About DNS (BIND) with Database X-BeenThere: freebsd-isp@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Internet Services Providers List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 17 Nov 2003 15:20:25 -0000 > Bind9 ( name server x.x.x.2) > Mydns x.x.x.3 ( > database ) > Bind9 ( name server x.x.x.1) > Bind9 ( > secondary ) > > in this environment ; personally i wouldn't use bind, its had a bad security history. tinydns/djbdns would be my prefered method. As for your design, seems ok but replication is definatly the easier way - No generating horrible bind confs/zone files :/