[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [ossig] DNS equivalent of RFC1918 private IPs?



I   consider BIND "broken" because  of  Sendmail syndrome  - a venerable
implementation which is starting to look less attractive than the bright
shiny  new ones.  Also I've read  a few analyses  of BIND which fault it
for its monolithic design,  its   sometimes-idiomatic behavior and   its
<OPINION>sub-optimal zone data  format</OPINION>.   BIND seems to  break
often enough (security  holes, bugs, mis-named  "features", etc.) that I
am wary of pushing it beyond very simple configuration.

You're right, my using "foo.com" or even "isc.org" shouldn't be an issue
since nobody  with   Internet  connectivity should  ever  use  me   as a
recursive  NS, and  nobody  who *does* use  me   as a  recursive  NS has
Internet connectivity.   But the paranoiac in  me  says I  should fix it
anyway...

-- 
% You are in a maze of twisty passages, all alike.
  Christopher DeMarco
  cdemarco@fastmail.fm
  +6013 389 5658

------------------------------------------------------------
To unsubscribe: send mail to ossig-request@mncc.com.my
with "unsubscribe ossig" in the body of the message