On 25/01/2018 16:50, Alain RICHARD wrote:
Also about your example of a customer move the domain to an other, I don’t think this is solve by the separation of recursor and auth server as you will have to remove the forwarding zones from the recursor and/or the dnsdist processes in order to correct the problem.
That's not true: you *never* put forwarding zones on a recursor for public-facing DNS zones. The recursor just follows the NS records (delegation).
You only need to explicitly forward zones for private DNS zones which are not delegated.
_______________________________________________ Pdns-users mailing list Pdns-users@mailman.powerdns.com https://mailman.powerdns.com/mailman/listinfo/pdns-users