On Donnerstag 10 September 2009 Stephane Bortzmeyer wrote: > > right now I'm using scripts to download root.zone and in-addr.arpa > > from internic.net. But this is a non-standard way, > > But a secure way since the files on internic.net are PGP-signed. > > > I'd prefer to directly slave and zone-transfer those 2 zones. > > That's widely regarded as a bad practice. > > FreeBSD backed off: > <http://lists.freebsd.org/pipermail/freebsd-stable/2007-August/036545 >.html> > > Why it is a bad idea: > <http://lists.freebsd.org/pipermail/freebsd-stable/2007-August/036470 >.html> > > Discussion: > <https://lists.dns-oarc.net/pipermail/dns-operations/2007-August/0018 >91.html>
Merci beaucoup, Stephane, that's a clear statement, so I'll keep the ftp transfers. mfg zmi -- // Michael Monnerie, Ing.BSc ----- http://it-management.at // Tel: 0660 / 415 65 31 .network.your.ideas. // PGP Key: "curl -s http://zmi.at/zmi.asc | gpg --import" // Fingerprint: AC19 F9D5 36ED CD8A EF38 500E CE14 91F7 1C12 09B4 // Keyserver: wwwkeys.eu.pgp.net Key-ID: 1C1209B4
signature.asc
Description: This is a digitally signed message part.
_______________________________________________ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users