[Pdns-users] allow-from and recursion
Nicola Tiling
nti at w4w.net
Sun Aug 5 13:51:01 UTC 2018
> You use dnsdist for this.
Or use powerdns-recursor
https://www.powerdns.com/recursor.html
"pdns-recursor“
https://launchpad.net/ubuntu/bionic/+package/pdns-recursor
> Am 05.08.2018 um 15:37 schrieb Aki Tuomi <cmouse at cmouse.fi>:
>
> On Sat, Aug 04, 2018 at 07:01:36PM -0500, Sergio Cesar wrote:
>> Installed PDNS 4.1.3 on a ubuntu 18.04.
>>
>> I have try to follow
>> https://doc.powerdns.com/authoritative/guides/recursion.html setting up
>> scenario 1:
>>
>> Any address I enter in "allow-from" is able to query the server and
>> recursion works ok, but no other query from the Internet is successful
>> unless I add 0.0.0.0/0 unfortunately this is not acceptable to have a
>> fully open server to the Internet.
>>
>> In bind we have "allow-recursion" and a list of all the addresses the
>> server will respond to and still respond to any query to domains itself
>> hosts .
>>
>> How can I configure pdns and pdns-recursor to respond to queries from
>> anyone to the authoritative server but only recurse to the allowed list?
>> without having an open dns on the Internet?
>>
>> Thanks.
>>
>
> You use dnsdist for this.
>
> Aki Tuomi
> _______________________________________________
> Pdns-users mailing list
> Pdns-users at mailman.powerdns.com
> https://mailman.powerdns.com/mailman/listinfo/pdns-users
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: Message signed with OpenPGP
URL: <http://mailman.powerdns.com/pipermail/pdns-users/attachments/20180805/da362cd2/attachment.sig>
More information about the Pdns-users
mailing list