Re: forwarding but no recursion?

2009-01-21 Thread Michael Milligan
, then this server is a resolving server anyway (serving end systems) and thus you would need recursion turned on... Regards, Mike -- Michael Milligan - mi...@acmeps.com ___ bind-users mailing list bind-users@lists.isc.org https

Re: BIND 9.6 Flaw - CNAME vs. A Record in MX Records are NOT Illegal

2009-01-30 Thread Michael Milligan
You just don't get it. You are off wandering around in the weeds. Read the tail end of Chapter 5 in the book DNS and BIND describing the MX selection algorithm in layman's terms to (perhaps) understand why having MX records referencing CNAMEs is bad. It may work right now for you, but

Re: BIND 9.6 Flaw - CNAME vs. A Record in MX Records are NOT Illegal

2009-02-02 Thread Michael Milligan
David Sparks wrote: There are plenty of ways to get a mail loop that don't involve DNS mis-configuration. As such pretty much every major MTA detects and stops mail loops. Not if you (accidentally) fat-finger the MTA configuration. It is completely possible to still mis-configure a MTA to

Re: [OT] Is it possible to set a ddns hostname to access a name-based virtual host?

2009-02-20 Thread Michael Milligan
those by just not even trying to do what you asked. -- Michael Milligan - mi...@acmeps.com ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: [OT] Is it possible to set a ddns hostname to access a name-based virtual host?

2009-02-23 Thread Michael Milligan
. Unless you take a proxy approach. Regards, Mike -- Michael Milligan - mi...@acmeps.com ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: Hostname Naming Compliance

2009-02-23 Thread Michael Milligan
to underscores. Until they change, we all are stuck with the mess. Regards, Mike -- Michael Milligan - mi...@acmeps.com ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: Forward Unknown Lookups

2009-02-27 Thread Michael Milligan
of an MX record), then the view from your perspective will look different and may have unintended consequences. Just think it through and test if you're not sure. And don't forget about what you've done when it comes time to troubleshoot a problem in 6 months! Regards, Mike -- Michael Milligan

Re: Hostname Naming Compliance

2009-03-01 Thread Michael Milligan
, Mike -- Michael Milligan - mi...@acmeps.com ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: Max. Number of char in a TXT Record

2009-03-30 Thread Michael Milligan
if you exceed the 10 lookup limit. See http://www.openspf.org/, there are tools, tips and tricks to help you. Regards, Mike -- Michael Milligan - mi...@acmeps.com ___ bind-users mailing list bind-users@lists.isc.org

Re: DR bind

2009-04-22 Thread Michael Milligan
the only thing you have to worry about is dynamic updates during those times, but those are usually re-tried later (typically from DHCP servers or Microsoft DCs). Some food for thought. Regards, Mike -- Michael Milligan - mi...@acmeps.com

Re: Windows/BIND integration [was: Combined master + forward zone]

2009-04-22 Thread Michael Milligan
one customer with 100s of DCs, and each one put in an NS record in the zone for itself... ugh. With a little magic, dropped that back to a handful of DCs at big data centers.) Regards, Mike -- Michael Milligan - mi...@acmeps.com

Re: zone transfers

2009-06-03 Thread Michael Milligan
-source, notify-source, and friends.) Regards, Mike -- Michael Milligan - mi...@acmeps.com ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: weight for RR

2009-06-04 Thread Michael Milligan
vendor name here). Or a BIND patch, e.g, to enhance rrset-order {} functionality (I don't know of a public one). Or use SRV records instead if this is for an application you are developing. Regards, Mike -- Michael Milligan - mi...@acmeps.com

Re: Questions about DNAME records

2009-06-16 Thread Michael Milligan
say records since DNAME chains are possible here too (though not recommended of course). Regards, Mike -- Michael Milligan - mi...@acmeps.com ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org

Re: SPF/TXT records

2009-06-18 Thread Michael Milligan
. See openspf.org and dkim.org for more details. Regards, Mike -- Michael Milligan - mi...@acmeps.com ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: Moving an AD Zone from Windows to BIND

2009-07-28 Thread Michael Milligan
for automatically re-signing the zone (incremental signing) as dynamic updates are processed. Regards, Mike -- Michael Milligan - mi...@acmeps.com ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org

Re: DNSSEC DSSET KEYSET

2010-01-30 Thread Michael Milligan
if all the right things are in place and that there is (or is not) a chain of trust from your trusted anchor (DNSKEY) to your domain, and if not, where the chain is broken. Regards, Mike -- Michael Milligan - mi...@acmeps.com