[Leaplist] DNS intranet advice

Dan Cherry dan.s.cherry at gmail.com
Mon Nov 10 11:49:31 EST 2008


On Saturday 08 November 2008 9:57:46 pm Bryan J. Smith wrote:
> Dan Cherry <dan.s.cherry at gmail.com> wrote:
<snip>
> As a long-time BIND wennie (since 1989, original InterNIC
> handle ended in "12"), I finally just started using
> "dnsmasq" more recently.  I'm sold as the master for SOHO,
> single subnet/subdomains now.  I still need to research
> further the security quality on "dnsmasq" before I swear
> by it.
>

I took a look at djbdns, and found several tutorials - some matched, some 
didn't.  Also, I have nothing against compiling programs, but really favor 
having software in the debian repositories - much easier to avoid missing an 
update.

So I also took a look at dnsmasq (the first I'd heard of that program) - 
verified the latest versions, checked some of the usual dns security blurbs 
(cache poisoning, etc.) and found 2.45 was good for now.

I'm impressed - I had dnsmasq up and running in less than two minutes!!!  This 
included apt-get blah-blah and make minor changes to  hosts and resolv.conf!  
(of course it took an hour to read what had to be done - but that takes a 
little away from the story).  I'll be moving my dhcp chores from the linksys 
router to dnsmasq, later this evening.  I'll post back if I have any points 
of interest.  Thanks again, for the reply and the suggestion.  It's looking 
like a winner.
<snip>


-- 
Dan
Finding a solution to a problem doesn't solve the problem...
Implementing the solution, solves the problem

-- 
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.



More information about the Leaplist mailing list