Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
DNS machine providing all services.
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index Networking & Security
View previous topic :: View next topic  
Author Message
sophie78
n00b
n00b


Joined: 23 Feb 2005
Posts: 35

PostPosted: Tue Jun 28, 2005 8:02 pm    Post subject: DNS machine providing all services. Reply with quote

hi guys,
This may seem like a totally stupid question but any answers will be of great help. I want to try setup my machine as a DNS server "for itself". To clarify more, I have one machine sitting behind a router and I want it to act as a DNS server as well as provide all the services (www, ftp, mail,subdomains...).

I want to learn about DNS with my single machine. I know there are a couple of tutorials online, but i have been unable to find one that addresses this.
I just need a few hints, or if some body has done it and they now of a useful resource, let me in.

Thanx
_________________
I like to think, things never go wrong for me.
Back to top
View user's profile Send private message
Crisis
l33t
l33t


Joined: 10 Feb 2003
Posts: 613
Location: Portland, OR

PostPosted: Tue Jun 28, 2005 8:18 pm    Post subject: Reply with quote

http://gentoo-wiki.com/HOWTO_Setup_a_DNS_Server_with_BIND

http://bind.org
Back to top
View user's profile Send private message
Liquid Crystal
Tux's lil' helper
Tux's lil' helper


Joined: 06 Nov 2003
Posts: 77

PostPosted: Wed Jun 29, 2005 5:38 pm    Post subject: Reply with quote

I would prefer djbdns over BIND
http://gentoo-wiki.com/HOWTO_Setup_a_DNS_Server_with_DJBDNS

http://cr.yp.to/djbdns.html
_________________
Making *nix user friendly is easier than debugging Windoz
Tuxntosh web site The *nix Graphics Web Site
(Warning! Not for M$ Windowz users!)
Back to top
View user's profile Send private message
Crisis
l33t
l33t


Joined: 10 Feb 2003
Posts: 613
Location: Portland, OR

PostPosted: Wed Jun 29, 2005 7:01 pm    Post subject: Reply with quote

Quote:
I would prefer djbdns over BIND


Care to explain why?
Back to top
View user's profile Send private message
Liquid Crystal
Tux's lil' helper
Tux's lil' helper


Joined: 06 Nov 2003
Posts: 77

PostPosted: Sat Jul 02, 2005 12:58 pm    Post subject: Reply with quote

Reason 1, Security...djbdns is way secure over BIND

http://cr.yp.to/djbdns/guarantee.html
http://cr.yp.to/djbdns/other.html (Read the last part)

Reason 2, DJB wrote it, I like the guy's philosophy and mentality
http://cr.yp.to/djb.html
_________________
Making *nix user friendly is easier than debugging Windoz
Tuxntosh web site The *nix Graphics Web Site
(Warning! Not for M$ Windowz users!)
Back to top
View user's profile Send private message
tecknojunky
Veteran
Veteran


Joined: 19 Oct 2002
Posts: 1937
Location: Montréal

PostPosted: Mon Jul 04, 2005 4:49 am    Post subject: Reply with quote

Liquid Crystal wrote:
Reason 2, DJB wrote it, I like the guy's philosophy and mentality
http://cr.yp.to/djb.html

Berstein seems to be a little bit too self absorb by its own farts. I find is way of dealing with the Bind guys to be really childish and I think redefining standards in order to implement security is cheap and lazy. All that said, this admin admit that setting qmail in 2002 and never since had to patch it for security reasons is really really appreciated.

So, I'm trying to replace dnsmasq with djbdns, but I'm having a hard time to make it go. I made the mistake at first to try to set dnscache and tinydns on the same machine. Now I'm trying to fudge it by manipulating the settings in the files, but I'm not quite digging how one should set both programs on the same box.

So, I have set dnscache to bind to 127.0.0.1 and to respond to requests coming from 127.0.0.1, 192.168.1 and 192.168.2. I have set dnscache upstream servers to be 127.0.0.2, the two dns my ISP is provinding me with, and two other that serves non-ICANN TLDs.

I have set tinydns to bind to 127.0.0.2 and all my local lan names are set in it. The clients on the lan are set with 192.168.1.11 in /etc/resolv.conf (where djbdns lives). This dns server does not resolv names on the public side, only local lan side.

So, from the clients, I can resolv names from both public and private zones, and on 192.168.1.11 I can also resolv public domains, but I can't resolv private dns. Its /etc/resolv.conf has 127.0.0.1 in it. I tried putting 192.168.1.11 but it seem to resolv in infinit loop as it takes for ever to resolv a name (which fails) and even doing a simple ls will now take forever, so I reverted back to 127.0.0.1.

Hints are requested.

updates:

Ok, I've put back 192.168.1.11 in resolv.conf and it seem to work, but it's awfully slow...
Quote:
# ping fiston
PING fiston.inet (192.168.1.2) 56(84) bytes of data.
64 bytes from 192.168.1.2: icmp_seq=1 ttl=64 time=0.232 ms
64 bytes from 192.168.1.2: icmp_seq=2 ttl=64 time=0.243 ms
64 bytes from 192.168.1.2: icmp_seq=3 ttl=64 time=0.254 ms

--- fiston.inet ping statistics ---
3 packets transmitted, 3 received, 0% packet loss, time 20005ms
rtt min/avg/max/mdev = 0.232/0.243/0.254/0.009 ms

_________________
(7 of 9) Installing star-trek/species-8.4.7.2::talax.
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index Networking & Security All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum