[Opendnssec-develop] DNS adapters configuration

Matthijs Mekking matthijs at NLnetLabs.nl
Tue Sep 13 08:58:21 UTC 2011


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 09/13/2011 10:34 AM, Rickard Bellgrim wrote:
>> I don't know if and how to fit in tunings for zone transfers like axfr
>> only, udp only. Do we need to have that? If so, is that on a per zone
>> basis or a per host basis?
> 
> Perhaps an optional AxfrOnly element in both the inbound and outbound
> part of acl.xfr.
> 
> On what level would you have UdpOnly? Do you need to know it in addns.xml?

Sorry, I should have said allow udp, to allow ixfr over udp instead of tcp.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQEcBAEBAgAGBQJObxstAAoJEA8yVCPsQCW5B6gIAMvty+bMbDJkp9ylr0zRZsNw
ZPmndOX338a+Ief1Dywm975jwNKY4ubBImb/lAjB5nBIZ8sT2dNYTgl3QZqNlk+Z
Ekj59nxWtxcbrxsKdFtDjcAF7os1xswpGhGn/UQC+iWKVvD33rxwTWV/7kq/Kf9t
idZ+h+SRV1j6ZKIWImyTLaQaulDz6JSjOiiUb8IQ2KPegOhKchyhpxYaQsGNUIGP
eV8EV2qzGNIcFqRb9ICBJU314qsnxITCXw4ffzv/Sl8pziO68EkfvGOL9DxwY/OR
Od4WklJO3vBhhl27gLkDOX0opiSF7/LLj9zzZJ5/1nCjeKT+RiNAZgoFUAODuYw=
=IUY6
-----END PGP SIGNATURE-----



More information about the Opendnssec-develop mailing list