Great Circle Associates Firewalls
(April 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Internal's root.cache
From: thierry agassis <thierry @ osftag . geo . dec . com>
Date: Thu, 20 Apr 95 08:54:38 +0200
To: Tim Keanini <blast @ worldbit . com> (Tim Keanini)
Cc: firewalls @ GreatCircle . COM
In-reply-to: Your message of "Wed, 19 Apr 95 15:50:15 BST." <v01510104abbad06c01f5 @ [192 . 0 . 2 . 1]>

> Hi everyone,
> I ftp'ed the entire archive of mailing lists and grep'ed for root.cache and
> only two articles showed up and they were not that clean on the topic....so
> I am going to de-lurk and ask:
> 
> InternalDNS has 'forwarders' that point to ExternalDNS
> and my  has the /etc/resolv.conf that points to InternalDNS bo
x.
> 
> OK so far...

It sounds like you set a split brain DNS configuration.

> 
> My question is what do I put in my InternalDNS's root.cache?
> If I leave it the way it is with the current root.cache from
> RS.INTERNIC.NET the InternalDNS server is trying to send .domain messages
> to those IP's and gets blocked by my CHOKE router.
>

Why would you change the cache file ? The forwarders listed in the InternalDNS 
server is all what you need to resolve external names. It is up to the 
ExternalDNS box to contact the root servers in turn.
You could even set your InternalDNS server as slave, as well, to prevent it from 
contacting the root servers.


Thierry AGASSIS                     |  The above words don't 
UNIX and Internet Support           |  necessarily reflect the opinion
DEC-TEP 16 Partner		    |  of my Company / Boss ...
				    |
Mail address :			    |	_/_/_/_/_/      _/
	thierry @
 osftag .
 geo .
 dec .
 com  |      _/	     _/  _/
URL :				    |	  _/	    _/  _/   _/_/_/ 
   	http://www-mcs.geo.dec.com  |	 _/	   _/_/_/   _/  _/
  				    |	_/   _/   _/  _/   _/_/_/ _/
							      _/
		     					 _/_/_/
							  


References:
Indexed By Date Previous: Re: New Book
From: Network Security Observations <NSO @ delphi . com>
Next: Re: Cisco forums
From: lavondes @ tidtest . total . fr (Michel Lavondes)
Indexed By Thread Previous: Internal's root.cache
From: Tim Keanini <blast @ worldbit . com> (Tim Keanini)
Next: Re: Internal's root.cache
From: c . palmer @ dtt . co . nz (Chris Palmer)

Google
 
Search Internet Search www.greatcircle.com