![]() |
![]() OCAU News - Wiki - QuickLinks - Pix - Sponsors |
|
|||||||
| Notices |
|
Sign up for a free OCAU account and this ad will go away! Search our forums with Google: |
![]() |
|
|
Thread Tools |
|
|
#1 |
|
Member
Join Date: Sep 2001
Location: Brisbane
Posts: 1,473
|
Hey guys,
I'm looking for a good External DNS Virtual Appliance or similar to handle external DNS queries for about 2 dozen domains we manage. Preferable to have: - Webmin type interface for ease of use for engineers. - Auto replication from ns0.blah to ns1.blah host for any changes (not critical) - Easy to whack in a VMware environment at either location / low resources. Currently using a couple of aging Redhat VM boxes running Bind for years at different locations, but the replication is sort of broken amongst other things and one is becoming less reliable by the day.. requiring weekly babying / rebooting, etc.. Googling around gives mixed results. Many suggesting Ubuntu with Bind again, but I was hoping for something more as per the above - preferably a pre-complied appliance ot the like (do they exist?), if not free - some pricing may be still an option. Anyone here have suggestions / use something similar? Thanks. |
|
|
|
| Join OCAU to remove this ad! |
|
|
#3 |
|
Member
Join Date: Oct 2004
Location: Austin, TX
Posts: 1,293
|
Infoblox is perfect if you're looking for a turnkey appliance.
|
|
|
|
|
|
#4 |
|
Member
Join Date: Sep 2001
Location: Brisbane
Posts: 1,473
|
Thanks for the suggestion, will check it out.
|
|
|
|
|
|
#5 |
|
Member
Join Date: Mar 2003
Location: Armadale, Melbourne
Posts: 1,653
|
A common reason for broken replication and DNS slaving is if a tech forgets to update the zone file serial number, I'd make sure that's not happening before i roll out a new solution.
|
|
|
|
|
|
#6 |
|
Member
Join Date: Dec 2002
Location: Townsville
Posts: 9,104
|
Is there anything fundamentally wrong with running bind on a primary and secondary and simply doing an rsync of the zone files to the secondary?
I only have simple requirements, but I have bind+smbind installed on a debian machine (smbind is only enabled when needed, I don't trust such web GUIs), and after making changes I rsync the files to the secondary (Ubuntu machine with bind) and all seems well.
__________________
Successful trades: eyusuf, andy8, stuartl, michaeliam, theDarkHorse, bob |
|
|
|
|
|
#7 |
|
Member
Join Date: Oct 2005
Location: Coffs Harbour, NSW
Posts: 2,712
|
Perhaps also look at cPanel DNS only. Easy to set up replication between them and it is a nice GUI.
__________________
I has blog! |
|
|
|
|
|
#8 |
|
Member
Join Date: Jun 2001
Location: Brisbane (nth), Australia
Posts: 6,304
|
Honestly, "you're doing it wrong".
If you don't have enough in house skill / time to properly manage two internet facing linux boxes and a single application (bind) without a preconfigured VM and a web gui, you're wasting your time trying to DIY something as mission critical as DNS. The amount time you'll spend keeping them secured and troubleshooting someone elses build you might as well just spend less dollars on an external host. Here is a company I used for a few years. They're one of many who'll give you a web interface and geographically dispersed servers. $60 per year for 25 domains + the time it takes your staff to transfer the records. I'd be really interested to know if there's a reason that wouldn't be a better solution?
__________________
_,ĝ¤°`°¤ĝ,¸_¸,ĝ¤°`°¤ĝ,¸_¸,ĝ¤°`°¤ĝ,¸_ WTB: Cisco 1801-M PM me Please rehash my posts and pass them off as your own ideas! Triple points for doing it in the same page of the thread. Plagiarism is the sincerest form of copyright infringement. |
|
|
|
|
|
#9 |
|
Member
Join Date: Apr 2002
Location: Melbourne
Posts: 1,024
|
+1 to DNS Made Easy used them for years been rock solid except for 1 DDOS attack they couldn't mitigate.
__________________
| Intel Core i7-860 | Gigabyte GA-P55A-UD3P | | Corsair X128 Extreme SSD | 8GB Corsair DDR3 1333 | | MSI GTX275 896MB| Antec P183 | Antec 750W PSU | Storage Synology DS1511+ 4 x Hitachi 3TB Deskstar 5K3000 |
|
|
|
|
|
#10 | |
|
Member
Join Date: Sep 2001
Location: Sydney
Posts: 225
|
Quote:
__________________
You're wrong. |
|
|
|
|
|
|
#11 | |
|
Member
Join Date: Jul 2004
Location: Sydney
Posts: 2,722
|
Quote:
Setting up bind with a master and a couple of slaves is a few hours work at max. Anyway, I agree with Iceman, just outsource it. Plenty of DNS providers out there. |
|
|
|
|
|
|
#12 | |
|
Member
Join Date: Jun 2001
Location: Brisbane
Posts: 19,937
|
Quote:
I disagree. just because functionality is "built in" doesn't make it better, more reliable or more secure. DNS replication dramas have plagued many places I've worked for over the years, and through no fault of the good staff who managed it.
__________________
Child's Play Charity |
|
|
|
|
|
|
#14 |
|
Member
Join Date: Oct 2004
Location: Austin, TX
Posts: 1,293
|
|
|
|
|
|
|
#15 | |
|
Member
Join Date: Feb 2002
Location: Brisbane
Posts: 963
|
Quote:
He may be quite crazy, but the quality of the product speaks for itself. Especially when compared with bind. Just cos it's from Berkley and not Washington U, doesn't mean it's not crap
__________________
blbk |
|
|
|
|
![]() |
| Bookmarks |
|
Sign up for a free OCAU account and this ad will go away! |
| Thread Tools | |
|
|