I have a DNS server for my domain in the DMZ.
Due to vulnerabilites in BIND, I'd like to use ASL's DNS proxy (yes, I know it's running bind too) to answer public requests FOR THIS DOMAIN ONLY.
Right now, I have ASL's DNS proxy running, and forwarding to the DMZ server (10.0.0.1).
Is this correct, and how can I make it so ASL only answers for this domain? (Internal DNS must answer internal for any domain, so I cannot modify it.)
I know DJBDNS has an easy way to do this, but I don't know about Bind.
Thanks,
Barry
This thread was automatically locked due to age.