On 6-Sep-2006, at 13:04, [EMAIL PROTECTED] wrote:
ISC has implemented this in at least 9.3.2 and 9.3.2-P1:
Huh. I thought that was a new feature in 9.4, and was off by default.
None of the resolvers I run (all using 9.3.2) log those entries, and
queries for (e.g.) "d.f.ip6.arpa in soa?" give me an answer which
doesn't seem to be synthesised locally:
[lucy:/var/named/log]% dig @127.0.0.1 d.f.ip6.arpa soa
; <<>> DiG 9.3.2 <<>> @127.0.0.1 d.f.ip6.arpa soa
; (1 server found)
;; global options: printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 56608
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0
;; QUESTION SECTION:
;d.f.ip6.arpa. IN SOA
;; AUTHORITY SECTION:
ip6.arpa. 10797 IN SOA dns1.icann.org.
hostmaster.icann.org. 2006071901 3600 1800 604800 10800
;; Query time: 0 msec
;; SERVER: 127.0.0.1#53(127.0.0.1)
;; WHEN: Wed Sep 6 17:12:08 2006
;; MSG SIZE rcvd: 91
[lucy:/var/named/log]%
[lucy:/var/named/log]% named -v
BIND 9.3.2
[lucy:/var/named/log]%
[lucy:/var/named/log]% dig @127.0.0.1 version.bind ch txt +short
"9.3.2"
[lucy:/var/named/log]%
This thread is getting a little BIND-specific, however. Perhaps we
shouldn't dwell on such details for much longer on this list.
Joe
.
dnsop resources:_____________________________________________________
web user interface: http://darkwing.uoregon.edu/~llynch/dnsop.html
mhonarc archive: http://darkwing.uoregon.edu/~llynch/dnsop/index.html