Re: [Pdns-users] Problem with DNSSEC from bind to powerdns

2019-04-18 Thread abubin
On Thu, Apr 18, 2019 at 4:35 PM Brian Candler wrote: > On 18/04/2019 09:23, abubin wrote: > > However, due to DNSSEC it is not resolving the zone. It will work if I > > disable DNSSEC in bind. > > You need to create a Negative Trust Anchor in your recursor for the > doma

[Pdns-users] Problem with DNSSEC from bind to powerdns

2019-04-18 Thread abubin
Hi, I have just installed pdns and pdns-recursor on a server in secondary site. The primary site is using CentOS 7 bind to host private DNS. I am trying to create a forwarding DNS from bind to pdns in primary site. For example, when I query the primary DNS (1.2.3.4), it will forward certain

Re: [Pdns-users] Problem with DNSSEC from bind to powerdns

2019-04-18 Thread abubin
do I publish DS zone created in secondary into primary? I think alternatively I might need to run them as primary and secondary DNS. Thanks. On Thu, Apr 18, 2019 at 4:42 PM Gert van Dijk < gertvdijk+pdns-us...@gmail.com> wrote: > On Thu, Apr 18, 2019 at 10:24 AM abubin wrote: > &g

Re: [Pdns-users] pdns forward nested recurse possible?

2019-04-19 Thread abubin
Hi, I am just trying to have something simple. When a client query the pdns recursor server, it will first look at it's authoritative pdns domains. If non of the domains being queried is in authoritative then it will shoot to public dns for recurvise query. EG, dig onedomain.com

Re: [Pdns-users] pdns forward nested recurse possible?

2019-04-19 Thread abubin
How do I do plain recursion with only pdns installed? AFAIK, the new version of pdns does not support recursor anymore. Or maybe I am missing something? On Fri, Apr 19, 2019 at 5:32 PM Nico CARTRON wrote: > Hi, > > On 19-Apr-2019 11:21 CEST, wrote: > > > Hi, > > > > I am just trying to have

[Pdns-users] pdns forward nested recurse possible?

2019-04-19 Thread abubin
Hi, Is it possible to use recursor to forward all queries to pdns authoritative server and if that query fails, it will forward all to public DNS such as 8.8.8.8? For example, in my pdns, I have create a domain called mydomain.com and yourdomain.moc. So instead of creating:

Re: [Pdns-users] pdns forward nested recurse possible?

2019-04-19 Thread abubin
That means the way to go is what I stated initially. That is using pdns-recursor to forward "known" domains to authoritative server. The rest will be forward with recursive to public dns, right? On Fri, Apr 19, 2019 at 5:48 PM Nico CARTRON wrote: > On 19-Apr-2019 11:44 CEST, wrote: > > > How

[Pdns-users] rate-limit support

2020-01-14 Thread abubin .
Hi, I have been using pdns for a year now. It is mainly used for our internal LAN. Recently due to security compliance, we need to set rate limit to queries. A quick search found that we need to use LUA script for rate limit in pdns. Just wondering is this still the case or new version of pdns