From owner-freebsd-hackers@FreeBSD.ORG Sat Jul 7 23:40:05 2012 Return-Path: Delivered-To: freebsd-hackers@freebsd.org Received: from mx2.freebsd.org (mx2.freebsd.org [IPv6:2001:4f8:fff6::35]) by hub.freebsd.org (Postfix) with ESMTP id 2CA051065694 for ; Sat, 7 Jul 2012 23:40:05 +0000 (UTC) (envelope-from dougb@FreeBSD.org) Received: from opti.dougb.net (hub.freebsd.org [IPv6:2001:4f8:fff6::36]) by mx2.freebsd.org (Postfix) with ESMTP id 8E83815772A; Sat, 7 Jul 2012 23:38:56 +0000 (UTC) Message-ID: <4FF8C890.9030408@FreeBSD.org> Date: Sat, 07 Jul 2012 16:38:56 -0700 From: Doug Barton Organization: http://SupersetSolutions.com/ User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:13.0) Gecko/20120621 Thunderbird/13.0.1 MIME-Version: 1.0 To: Garrett Wollman References: <4FF2E00E.2030502@FreeBSD.org> <86bojxow6x.fsf@ds4.des.no> <89AB703D-E075-4AAC-AC1B-B358CC4E4E7F@lists.zabbadoz.net> <4FF8C3A1.9080805@FreeBSD.org> <20472.51031.308284.775990@hergotha.csail.mit.edu> In-Reply-To: <20472.51031.308284.775990@hergotha.csail.mit.edu> X-Enigmail-Version: 1.4.2 OpenPGP: id=1A1ABC84 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Cc: "Bjoern A. Zeeb" , FreeBSD Hackers , =?ISO-8859-1?Q?Dag-Erling_Sm=F8rgrav?= Subject: Re: Replacing BIND with unbound (Was: Re: Pull in upstream before 9.1 code freeze?) X-BeenThere: freebsd-hackers@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Technical Discussions relating to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 07 Jul 2012 23:40:05 -0000 On 07/07/2012 16:33, Garrett Wollman wrote: > < said: > >> BIND in the base today comes with a full-featured local resolver >> configuration, which I'm confident that Dag-Erling can do for unbound >> (and which I would be glad to assist with if needed). Other than that, >> what integration are you concerned about? > > The utilities (specifically host(1) and dig(1)) are the only > user-visible interfaces I care about. I don't see any need for there > to be an authoritative name server in the base system. So long as the > resolver works properly and does DNSsec validation.... I addressed the utils in a previous message, but once more ... ldns (a dependency of unbound) comes with drill, which is a dig-alike tool. I'd like to see us produce a host-alike based on ldns as well, which should be a pretty simple "junior hacker task" for a motivated group. If those don't do it for you, ports/dns/bind-tools already exists. Doug -- This .signature sanitized for your protection