[Pdns-users] allow-from and recursion

Nicola Tiling nti at w4w.net
Sun Aug 5 13:51:01 UTC 2018


> You use dnsdist for this.

Or use powerdns-recursor

https://www.powerdns.com/recursor.html

"pdns-recursor“

https://launchpad.net/ubuntu/bionic/+package/pdns-recursor





> Am 05.08.2018 um 15:37 schrieb Aki Tuomi <cmouse at cmouse.fi>:
> 
> On Sat, Aug 04, 2018 at 07:01:36PM -0500, Sergio Cesar wrote:
>> Installed PDNS 4.1.3 on a ubuntu 18.04.
>> 
>> I have try to follow
>> https://doc.powerdns.com/authoritative/guides/recursion.html setting up
>> scenario 1:
>> 
>> Any address I enter in "allow-from" is able to query the server and
>> recursion works ok, but no other query from the Internet is successful
>> unless I add 0.0.0.0/0 unfortunately this is not acceptable to have a
>> fully open server to the Internet.
>> 
>> In bind we have "allow-recursion" and a list of all the addresses the
>> server will respond to and still respond to any query to domains itself
>> hosts .
>> 
>> How can I configure pdns and pdns-recursor to respond to queries from
>> anyone to the authoritative server but only recurse to the allowed list?
>> without having an open dns on the Internet?
>> 
>> Thanks.
>> 
> 
> You use dnsdist for this.
> 
> Aki Tuomi
> _______________________________________________
> Pdns-users mailing list
> Pdns-users at mailman.powerdns.com
> https://mailman.powerdns.com/mailman/listinfo/pdns-users

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: Message signed with OpenPGP
URL: <http://mailman.powerdns.com/pipermail/pdns-users/attachments/20180805/da362cd2/attachment.sig>


More information about the Pdns-users mailing list