[Pdns-users] Recursor and subdomain forward

Giovanni Vecchi g.vecchi at certego.net
Fri Mar 20 10:56:01 UTC 2020


Hi everybody,

@Brian: my bad, my local domain isn't an ".local" one but ".sec", so please
consider domain.sec as root domain
The current behaviour is that public root domain are queried for every
*.domain.sec from recursor instead the authoritative one!
My conf:

config-dir=/etc/powerdns
local-address=0.0.0.0
local-port=53
setgid=pdns
setuid=pdns
allow-from=0.0.0.0
logging-facility=1
loglevel=9
quiet=no
version-string=Mind your own business…
webserver=yes
webserver-address=0.0.0.0
webserver-allow-from=127.0.0.1
webserver-port=8082
api-key=XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
forward-zones=domain.sec=127.0.0.1:5300


PS: recursor and authoritative are installed in the same server, querying
the second one directly on port 5300 from localhost is ok

On Fri, 20 Mar 2020 at 11:49, Brian Candler <b.candler at pobox.com> wrote:

> On 20/03/2020 10:38, Giovanni Vecchi via Pdns-users wrote:
>
> is there a "smart" way to instruct recursor to forward zone and each own
> "subdomain" to an authoritative server? Something like this:
>
> forward-zone=*.domain.local=<ip_of_auth_server>
>
> The expectation is that queries to every level starting from  domain.local
> (ex: hello.domain.local, good.night.domain.local, etc...) will be forwarded
> to auth server ip.
>
> That's pretty much what
>
> forward-zone=domain.local=<ip_of_auth_server>
>
> already does.  Does it not work for you?  What behaviour do you see
> instead?
>


-- 

 <http://www.certego.net/>
Giovanni Vecchi
Infrastructure Lead Engineer, Certego
+39-059-7353333
 <http://www.linkedin.com/company/certego>
<http://twitter.com/Certego_IRT>  <http://github.com/certego>
<http://www.youtube.com/CERTEGOsrl>
<http://plus.google.com/117641917176532015312>
Use of the information within this document constitutes acceptance for
use in an "as is" condition. There are no warranties with regard to
this information; Certego has verified the data as thoroughly as
possible. Any use of this information lies within the user's
responsibility. In no event shall Certego be liable for any
consequences or damages, including direct, indirect, incidental,
consequential, loss of business profits or special damages, arising
out of or in connection with the use or spread of this information.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.powerdns.com/pipermail/pdns-users/attachments/20200320/3c356020/attachment-0001.htm>


More information about the Pdns-users mailing list