Gentoo Archives: gentoo-user

From: Michael Mol <mikemol@×××××.com>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Running HTTP and DNS on same machine
Date: Thu, 18 Aug 2011 01:36:51
Message-Id: CA+czFiBszrMHDXuyo94pRXTDtCfvAOjW44emHMs8UWoceakb8w@mail.gmail.com
In Reply to: Re: [gentoo-user] Running HTTP and DNS on same machine by Alan McKinnon
1 On Wed, Aug 17, 2011 at 5:53 PM, Alan McKinnon <alan.mckinnon@×××××.com> wrote:
2 > On Wed 17 August 2011 17:23:41 Michael Mol did opine thusly:
3 >> On Wed, Aug 17, 2011 at 4:56 PM, Grant <emailgrant@×××××.com> wrote:
4 >> > I currently use a free service to host the DNS records for my
5 >> > website, but I'm thinking of running a DNS server on the same
6 >> > machine that runs my website instead.  Would that be fairly
7 >> > trivial to set up and maintain?  If so, which package should I
8 >> > use?
9 >>
10 >> ISC bind is the de facto standard for DNS servers. I haven't
11 >> administered bind on Gentoo, but on Debian, most of the problems I
12 >> run into come from how Debian packages and updates configuration
13 >> files.
14 >>
15 >> I'm not running DNS servers in any major production capacity; I've
16 >> got a bind server at home linking my home domain and my employer's
17 >> work domain across a VPN, and updated dynamically via a dhcpd on
18 >> the same server. It's also serving as a caching recursive resolver
19 >> for my home network, which was *really* necessary when I was still
20 >> on AT&T. (The DSL link was dropping packets every now and again,
21 >> and it's a PITA when that happens to DNS queries)
22 >
23 > You're running an auth server and a cache on the same machine?
24
25 Split across a couple views, but yeah. And no recursion allowed on the wan side.
26
27 >
28 > At a minimum they should be on different interfaces and preferably in
29 > chroots. Otherwise all manner of $BAD_STUFF happens.
30
31 Hm. Interested.
32
33 echo $BAD_STUFF
34
35 (or URI)
36
37 --
38 :wq

Replies

Subject Author
Re: [gentoo-user] Running HTTP and DNS on same machine Florian Philipp <lists@×××××××××××.net>