I have an interesting problem. I am running BIND 9.2.1 and have configured
two views: one for hosts on the "inside" and the other for everyone else
(i.e. the Internet). I have several names that I need to resolve differently
depending on where the end clients is. However, some number of clients in
one organization on an "exterior" network (with exterior IP addresses) are
configured to use "interior" name servers from another related organization.
The problem is that when the client resolves one of the specific names with
two possible address (depending on the view), the client almost always gets
an non-authoritive response from their name server.. unfortunately, since
their name server is an "inside" host, the client gets an "inside" address
from my "inside" view rather than the proper "exterior" address. Since the
outside client cannot get to the inside address, this is a problem.
I'm stumped on how to approach this issue.
If the clients were configured to use name servers that don't match my
"inside" view, all is well. However, I suspect that the powers-that-be will
be reluctant to change these clients to use different name servers. (I'm
going to ask tomorrow.)
Is there a way I can force the client to come directly to me for certain
records? If I could do this, then the client would get the "correct" address
from the exterior view rather than the cached, wrong address from its name
server.
Matt
--
Matthew Cheek | Medical Archival Systems, Inc. (a.k.a. MARS)
Systems Analyst IV | 1370 Beulah Road | Pittsburgh, PA 15235-5084
cheek@xxxxxxxxxxxxxxxx | v: 412-473-6565 | f: 412-473-6538
Confidential UPMC Health System information. Any unauthorized or improper
disclosure, copying, distribution, or use of the contents of this
[document/E-Mail] is prohibited. The information contained in this E-Mail
message is intended only for the personal and confidential use of the
recipient(s) named above. If you have received this communication in error,
please notify the sender immediately by E-mail and delete the original
message.
|