If it ain't broke ...

However, BIND 8 does have some security features such as

allow-transfer {ip-list}

so that not every machine in the world can DL all your zones to prepare a 
battle plan.  And the BIND logging can really show you some interesting 
stuff (there is a lot going on!!!).  I don't think MS's current nameservice 
has any security or logging, afaik (which isn't much).

I haven't done the MS-to-BIND switch, but I've heard it's pretty easy, if 
you really know how nameservice works, as opposed to fill out the forms GUI 
of MS DNS.

DNS, along with mail, is the coolest thing about Internet 
infrastructure.  Being able to "manage" BIND, as opposed to MS's 
dumbed-down mass-market facility, is a skill that every postmaster should, 
uh, master, imo.  It ain't really that hard, and the ISC BIND users mailing 
list is very active and helpful.

But since what you've got works for you, there is clearly no need to 
upgrade to real BIND.

Len

===========

>Perhaps I'm foolish, but I've been using Microsoft DNS for my primary and
>secondary for several years.  It seems very easy to use and hasn't ever
>caused me a problem.  I know this is off topic for this forum, but can
>someone tell me why BIND would be better to use than MS DNS??  How hard is
>it to switch??

Please visit http://www.ipswitch.com/support/mailing-lists.html 
to be removed from this list.

Reply via email to