Firewall Wizards mailing list archives

Re: DNS behind a firewall with multiple domains?


From: Joseph S D Yao <jsdy () cospo osis gov>
Date: Mon, 15 Mar 1999 15:05:00 -0500 (EST)

How about have the the 'slave' dns server being both a slave
(forwarder and slave directive) to the firewall for external
queries, and also have the slave be secondary to all of
your internal DNS servers? Since internal records have
priority, your internal name space will be checked first. 
And a internal BIND server should have more capacity
then the dnsd on the firewall to buffer these records...

Personal Opinions Provided By
Leonard Miyata
aka leonard () geminisecure com
GEMINI COMPUTERS INC.

As you may have seen in an earlier f-w response, this is an interesting
idea that a couple of other people had suggested before.  We've had
problems with this concept before - which may be why it didn't occur to
me - but I'm thinking about it now.  Thanks!

--
Joe Yao                         jsdy () cospo osis gov - Joseph S. D. Yao
COSPO/OSIS Computer Support                                     EMT-A/B
-----------------------------------------------------------------------
This message is not an official statement of COSPO policies.



Current thread: