Hi,

On Thursday, 11. December 2025 07:28:39 (+01:00), Benoît Panizzon wrote:


> Isn't there a setting which automatically allows all NS in a zone to
> perform a transfer?
> 
> Now I have to configure the secondaries for each zone, and
> unfortunately this are not always the same.
>

you could configure your zonetransfers to be secured by TSIG keys. That way the 
authentication of zone transfers is independent from the IP addresses.

TSIG key authentication is also considered more secure compared with IP address 
authentication.

Greetings

Carsten
-- 
Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from 
this list.

Reply via email to