On Thu, Aug 18, 2011 at 2:17 PM, Florian Philipp <li...@binarywings.net> wrote: > Am 18.08.2011 03:35, schrieb Michael Mol: >> On Wed, Aug 17, 2011 at 5:53 PM, Alan McKinnon <alan.mckin...@gmail.com> >> wrote: >>> On Wed 17 August 2011 17:23:41 Michael Mol did opine thusly: >>> At a minimum they should be on different interfaces and preferably in >>> chroots. Otherwise all manner of $BAD_STUFF happens. >> >> Hm. Interested. >> >> echo $BAD_STUFF >> >> (or URI) >> > > URI: http://cr.yp.to/djbdns/separation.html
Ah, gotcha. Yeah, I'm a bit worried about that. Even though I use a FQDN, I'm only authorative within my own network and I don't (yet) expose my DNS records publicly. (It all resolves to RFC1918 addresses...what'd be the point?) -- :wq