Great Circle Associates Firewalls
(April 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Internal's root.cache
From: Tim Keanini <blast @ worldbit . com> (Tim Keanini)
Date: Wed, 19 Apr 1995 15:50:15 +0100
To: firewalls @ greatcircle . com

Hi everyone,
I ftp'ed the entire archive of mailing lists and grep'ed for root.cache and
only two articles showed up and they were not that clean on the topic....so
I am going to de-lurk and ask:

InternalDNS has 'forwarders' that point to ExternalDNS
and my ExternalDNS box has the /etc/resolv.conf that points to InternalDNS box.

OK so far...

My question is what do I put in my InternalDNS's root.cache?
If I leave it the way it is with the current root.cache from
RS.INTERNIC.NET the InternalDNS server is trying to send .domain messages
to those IP's and gets blocked by my CHOKE router.

There was a posting in the archive that spoke of doing a:
>Set up your internal root servers with a primary directive, and your
>secondaries with a secondary directive, then load the root cache
>(named.ca) file with the NS and A records for the dns server on the
>FIREWALL.  (e.g.
>
>;       @(#)root.cache  1.1     (Berkeley)      86/01/21
>;
>; Initial cache data for root domain servers.
>;
>.                       999999  IN      NS      firewall.my.org.
>;
>;  Prep the cache (hotwire the addresses).  Order does not matter
>;
>firewall.my.org.         999999  IN      A           192.112.36.4
>)

but will I need to do this for a .COM, .NET, .EDU .etc.etc??????
I must be missing something here.

What should the root.cache be on my InternalDNS server?

If this is listed any where, just point me to it so that we can keep the
traffic down on this list.

Thanks,
blast

+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
|  "The limits of my language, are the limits of my world"  |
|                              --Wittgenstein               |
|                                                           |
|  <blast @
 crl .
 com>            <blast @
 worldbit .
 com>          |
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++




Follow-Ups:
Indexed By Date Previous: Additional Info on Firewall use
From: Mark Barnes <madmark @ mailstorm . dot . gov>
Next: Re: Self activating E-mail viruses?
From: Brent @ GreatCircle . COM (Brent Chapman)
Indexed By Thread Previous: Additional Info on Firewall use
From: Mark Barnes <madmark @ mailstorm . dot . gov>
Next: Re: Internal's root.cache
From: thierry agassis <thierry @ osftag . geo . dec . com>

Google
 
Search Internet Search www.greatcircle.com