-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Len Conrad
Sent: Tuesday, March 14, 2006 10:46 AM
To: [email protected]
Subject: Re: [IMail Forum] OT: Windows DNS and how to Limit (not remove)
recursion


>Is there a way in Windows DNS to limit recursive clients as there is in
BIND?

"limit recursive clients" in BIND means max open queries.

>  I want to allow recursion for certain subnets

Window DNS ACL are available for limiting zone transfer to slaves, 
but that's about all, afaik.

Certainly no ACL for allow/deny recursion/queries/blackhole/views/etc 
that all exist in BIND.

>>>>Actually it does.  Use the allow-recursion{} argument.

>, but not all.  I haven't found anything other than to remove all 
>recursion.  Secondly, if a DNS server does not allow for recursive 
>queries, is it just than a zone transferring box and that's all?

No recursion means a DNS only serves zone data.

All these limitations of Win DNS are why BIND 9.3.2 is a better DNS product.

Yeah - bummer on that!

Len


_____________________________________________________________________
http://IMGate.MEIway.com : free anti-spam gateway, runs on 1000's of sites


To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html
List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/
Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/


To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html
List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/
Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/

Reply via email to