On Mon, Jul 23, 2012 at 08:45:21AM +0000,
 Paul Vixie <[email protected]> wrote 
 a message of 21 lines which said:

> this is the right approach if you're running that server.

There is currently no way to write a program which will work with any
server because there is no standard to configure the server (see RFC
6168).

But dnssec-trigger is free software and can certainly be ported to
BIND/rndc. Ask the people at ISC to do it, I've been told they're nice
and knowledgeable :-)

> third, i'm not convinced that any existing recursive name server
> makes sense if it's only going to be talking to local clients.

In that respect, the future BIND 10 may be better (to provide a
lightweight resolver) than the monolithic BIND 9.

_______________________________________________
dns-operations mailing list
[email protected]
https://lists.dns-oarc.net/mailman/listinfo/dns-operations
dns-jobs mailing list
https://lists.dns-oarc.net/mailman/listinfo/dns-jobs

Reply via email to