Re: forwarding non-domain queries

2024-12-09 Thread Greg Choules via bind-users
Hi Nick. True, they do, but very infrequently. Here are the ones I could find from recent history: b-root 2023-11-27 i-root 2016-03-23 h-root 2015-12-01 d-root 2013-01-03 l-root 2007-11-01 Despite those changes, each release of BIND (and other resolvers, I believe) contains the current set, whatev

Re: forwarding non-domain queries

2024-12-09 Thread Nick Tait via bind-users
On 10/12/2024 12:25, Greg Choules via bind-users wrote: Actually you don't need it anyway, even if you are doing recursion, as Internet root hints have been built into BIND for many years. The only reason you would need a hint zone is to define custom roots for a private network that is *comple

Re: Undelegating a Signed Subdomain

2024-12-09 Thread Ondřej Surý
Chris, that depends whether both are on the same nameservers or not. If not then you can just fold first and then wait out the TTLs. If yes then it can get hairy and I would suggest to reduce the TTL on the delegation records to some small number (in the order of minutes). Perhaps also reduce TTL o

Undelegating a Signed Subdomain

2024-12-09 Thread Crist Clark
We have a zone, "bar.example.com," that is all properly delegated from " example.com." Although the subzone still has many records, " foo.bar.example.com" and such, the administrative reasons for having it as a separate zone are not so important anymore, and it would be convenient to simply manage

Re: forwarding non-domain queries

2024-12-09 Thread Greg Choules via bind-users
Hi Brian. If that's what you want to do; answer authoritatively from local zones you own and forward everything else to Corporate, then you have it correct. "forwarders {...etc" and "forward only;" go in the "options" block. Since you are forwarding everything that's not local *and* disabling recu

forwarding non-domain queries

2024-12-09 Thread Cuttler, Brian R (HEALTH) via bind-users
Hello, looking for a sanity check. Inside our network we are running BIND 9.18.28-0ubuntu0.22.04.1-Ubuntu on Ubuntu 22.04.5 LTS Currently our server serves our own zones files - A/CNAME/PTR/TXT/etc records for our domain. We have already modified the db.cache file to reference two servers prov

Re: Sporadic Timeouts after upgrading to bind9.20

2024-12-09 Thread Ondřej Surý
Hi Klaus, the bind-dev repository is now at 9.21.2-302-gebe0db5daad-1 as I remember you are using Debian on the servers, right? Could you test that version if you can see the same timeouts you've been encountering before? Thanks, Ondrej -- Ondřej Surý (He/Him) ond...@isc.org My working hours an