Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

block address resolving from outside world

Status
Not open for further replies.

roycrom

Programmer
Aug 2, 2002
184
GB
Hi,

I am running bind on solaris. Our DNS is authoritative for a couple of domains and resolves requests made from the general internet.

Can I create records that can only be resolved from my internal network and not the internet. i.e. some sort of private DNS records that can be put with the rest of the DNS entries.

for example - I would like server1.mydomain.uk to be resolvable from the internet as server1 hosts a public website but I would like server2.mydomain.uk to only be resolved on the internal network as it has no external presence and is only acessible internally.

Thanks for any help you can give.

------------------------------------------
Somethings come from nothing, nothing seems to come from somethings - SFA - Guerilla

roycrom :)
 
split brain dns..... ?

1 dns server with the same zone to service, one on each side of a firewall.

the internal dns has all 'hidden' hosts, external the visible ones

and internal forwards to external for internal queries destined outside...

does ANY of that make sense???
:)

Aftertaf
________
Regain control of your PC, at If you break your hard drive, it'll be DPlank's fault
 
Thanks aftertaf,

It pretty much makes sense to me, unfortunately, we have no spare server to act as the internal dns. I was hoping I could just add PRIVATE or similar to the record :) or at the least use the same instance of bind to do this.

Your reply is very much appreciated.

------------------------------------------
Somethings come from nothing, nothing seems to come from somethings - SFA - Guerilla

roycrom :)
 
is it poosible for you to make a child domain? If so you could host the child as internal.mydomain.uk and have all internal machines in this zone and external in the root mydomain.uk. One machine, two zones (root>>child). May help, may not (depends on how many records you want to hide and how many you have to change, etc....)
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top