LinuxQuestions.org

LinuxQuestions.org (/questions/)
-   Linux - Networking (https://www.linuxquestions.org/questions/linux-networking-3/)
-   -   Looking for Split DNS Information using Bind (https://www.linuxquestions.org/questions/linux-networking-3/looking-for-split-dns-information-using-bind-315646/)

jrbush82 04-21-2005 07:15 AM

Looking for Split DNS Information using Bind
 
I've been searching the web on how to setup Split DNS, but haven't been able to find any recent information. If anybody has any links or book etc.. that they know of specific to Split DNS, please let me know.

Thanks

scowles 04-22-2005 05:44 AM

Re: Looking for Split DNS Information using Bind
 
Quote:

Originally posted by jrbush82
I've been searching the web on how to setup Split DNS, but haven't been able to find any recent information. If anybody has any links or book etc.. that they know of specific to Split DNS, please let me know.

Thanks

Under bind 9, I believe the term split DNS has been implemented as bind views. I started using views from the excellent "Secure Bind Template" by Rob Thomas here

jrbush82 04-22-2005 08:00 AM

After reviewing http://www.cymru.com/Documents/secur...-template.html and learning of chrooted named environments, I figure this maybe a good way to setup a Split DNS system. To do this, I would create two chrooted environments for bind, one called /jail/bind.ext (external) and one called /jail.int (internal). Then I could allow the internal DNS server to query the external for anything, which would then forward the requests up to my ISPs DNS servers first (forward first on external, forward only on internal), as well as setup a local domain by creating a master zone file. My external DNS server would allow queries from the interal DNS server for forwarding, as well as queries for my public domain from any host. So, if I understand what I'm wanting to do correctly, in the end I would have two servers, both having master zone files, both in a secure and separate environment within the system.

Any extra thoughts?


All times are GMT -5. The time now is 07:54 PM.