home.social

#nameservers — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #nameservers, aggregated by home.social.

  1. I run my own #nameservers or #DNS if you will, and have done so for over 25 years. Initially based on #BIND (aka named) but I later moved to #PowerDNS, There are numerous frontends of varying quality available for PowerDNS. I have opinions on those, but this isn't about them.

    For the secondary name servers (in the old and less enlightened days known as slaves) I've always run the same software as the primary. First BIND, then PowerDNS. Recently though, I've been testing out what appears to be a much simpler alternative: #NSD by #Amsterdam based NLnet Labs.

    Using #CatalogZones - a new concept to me - I'm able to run secondaries with TSIG notifies and zone transfers as well as fully supported primary signed DNSSEC with a configuration of only 40 lines. No updates needed when adding or removing zones.

    For this to work well though, some configuration is required for each zone on the primary. With a little trigger and function magic, this can be automized by the database.

    Wheee!

  2. I run my own #nameservers or #DNS if you will, and have done so for over 25 years. Initially based on #BIND (aka named) but I later moved to #PowerDNS, There are numerous frontends of varying quality available for PowerDNS. I have opinions on those, but this isn't about them.

    For the secondary name servers (in the old and less enlightened days known as slaves) I've always run the same software as the primary. First BIND, then PowerDNS. Recently though, I've been testing out what appears to be a much simpler alternative: #NSD by #Amsterdam based NLnet Labs.

    Using #CatalogZones - a new concept to me - I'm able to run secondaries with TSIG notifies and zone transfers as well as fully supported primary signed DNSSEC with a configuration of only 40 lines. No updates needed when adding or removing zones.

    For this to work well though, some configuration is required for each zone on the primary. With a little trigger and function magic, this can be automized by the database.

    Wheee!

  3. Recently made the transition to self hosting authoritative name servers. Wrote a bit of secondary options available for it and the experience itself blog.sahilister.in/2025/07/sec

    Didn't found the process too hard TBF, worth a try.

    #authoritative #nameservers #dns #domains

  4. Recently made the transition to self hosting authoritative name servers. Wrote a bit of secondary options available for it and the experience itself blog.sahilister.in/2025/07/sec

    Didn't found the process too hard TBF, worth a try.

    #authoritative #nameservers #dns #domains

  5. Recently made the transition to self hosting authoritative name servers. Wrote a bit of secondary options available for it and the experience itself blog.sahilister.in/2025/07/sec

    Didn't found the process too hard TBF, worth a try.

    #authoritative #nameservers #dns #domains

  6. Recently made the transition to self hosting authoritative name servers. Wrote a bit of secondary options available for it and the experience itself blog.sahilister.in/2025/07/sec

    Didn't found the process too hard TBF, worth a try.

    #authoritative #nameservers #dns #domains

  7. Recently made the transition to self hosting authoritative name servers. Wrote a bit of secondary options available for it and the experience itself blog.sahilister.in/2025/07/sec

    Didn't found the process too hard TBF, worth a try.

    #authoritative #nameservers #dns #domains

  8. Case of (broken) maharashtra.gov.in Authoritative Name Servers blog.sahilister.in/2025/06/cas

    TLDR they're broken on multiple levels. Sync broken, RFC 1918 address, each NS giving different response - there's too much going on.

    #dns #authoritative #nameservers #india

  9. Case of (broken) maharashtra.gov.in Authoritative Name Servers blog.sahilister.in/2025/06/cas

    TLDR they're broken on multiple levels. Sync broken, RFC 1918 address, each NS giving different response - there's too much going on.

    #dns #authoritative #nameservers #india

  10. Case of (broken) maharashtra.gov.in Authoritative Name Servers blog.sahilister.in/2025/06/cas

    TLDR they're broken on multiple levels. Sync broken, RFC 1918 address, each NS giving different response - there's too much going on.

    #dns #authoritative #nameservers #india

  11. Case of (broken) maharashtra.gov.in Authoritative Name Servers blog.sahilister.in/2025/06/cas

    TLDR they're broken on multiple levels. Sync broken, RFC 1918 address, each NS giving different response - there's too much going on.

    #dns #authoritative #nameservers #india

  12. Good enough amount of name servers :P
    ```
    $ dig ns sahil.rocks +short
    ns2.afraid.org.
    marvin.sahilister.net.
    ns1.1984.is.
    ns0.1984.is.
    ns3.jing.rocks.
    colin.sahilister.net.
    puck.nether.net.
    ns2.albony.in.
    ns-global.kjsl.com.
    ns4.he.net.
    ns5.he.net.
    ```

    #dns #authoritative #nameservers

  13. Good enough amount of name servers :P
    ```
    $ dig ns sahil.rocks +short
    ns2.afraid.org.
    marvin.sahilister.net.
    ns1.1984.is.
    ns0.1984.is.
    ns3.jing.rocks.
    colin.sahilister.net.
    puck.nether.net.
    ns2.albony.in.
    ns-global.kjsl.com.
    ns4.he.net.
    ns5.he.net.
    ```

    #dns #authoritative #nameservers

  14. Good enough amount of name servers :P
    ```
    $ dig ns sahil.rocks +short
    ns2.afraid.org.
    marvin.sahilister.net.
    ns1.1984.is.
    ns0.1984.is.
    ns3.jing.rocks.
    colin.sahilister.net.
    puck.nether.net.
    ns2.albony.in.
    ns-global.kjsl.com.
    ns4.he.net.
    ns5.he.net.
    ```

    #dns #authoritative #nameservers

  15. Good enough amount of name servers :P
    ```
    $ dig ns sahil.rocks +short
    ns2.afraid.org.
    marvin.sahilister.net.
    ns1.1984.is.
    ns0.1984.is.
    ns3.jing.rocks.
    colin.sahilister.net.
    puck.nether.net.
    ns2.albony.in.
    ns-global.kjsl.com.
    ns4.he.net.
    ns5.he.net.
    ```

    #dns #authoritative #nameservers

  16. Observing .ic TLD against authoritative nameservers serving samsung.com. No information of them anywhere.

    $ dig ns samsung.com +short
    auth04.sam.ic.
    auth02.nhn.ic.
    auth01.nhn.ic.
    dns-gi2.samsung.com.
    auth02.sam.ic.
    dnssm.samsung.com.
    dns-awskr1.samsung.com.
    dnssm2.samsung.com.
    dnsst.samsung.com.
    dnsst2.samsung.com.
    auth03.nhn.ic.
    auth04.nhn.ic.
    auth01.sam.ic.
    auth03.sam.ic.
    dns-gi1.samsung.com.

    Maybe some internal thingy? Thoughts?

    #DNS #Authoritative #Nameservers

  17. Observing .ic TLD against authoritative nameservers serving samsung.com. No information of them anywhere.

    $ dig ns samsung.com +short
    auth04.sam.ic.
    auth02.nhn.ic.
    auth01.nhn.ic.
    dns-gi2.samsung.com.
    auth02.sam.ic.
    dnssm.samsung.com.
    dns-awskr1.samsung.com.
    dnssm2.samsung.com.
    dnsst.samsung.com.
    dnsst2.samsung.com.
    auth03.nhn.ic.
    auth04.nhn.ic.
    auth01.sam.ic.
    auth03.sam.ic.
    dns-gi1.samsung.com.

    Maybe some internal thingy? Thoughts?

    #DNS #Authoritative #Nameservers

  18. Observing .ic TLD against authoritative nameservers serving samsung.com. No information of them anywhere.

    $ dig ns samsung.com +short
    auth04.sam.ic.
    auth02.nhn.ic.
    auth01.nhn.ic.
    dns-gi2.samsung.com.
    auth02.sam.ic.
    dnssm.samsung.com.
    dns-awskr1.samsung.com.
    dnssm2.samsung.com.
    dnsst.samsung.com.
    dnsst2.samsung.com.
    auth03.nhn.ic.
    auth04.nhn.ic.
    auth01.sam.ic.
    auth03.sam.ic.
    dns-gi1.samsung.com.

    Maybe some internal thingy? Thoughts?

    #DNS #Authoritative #Nameservers

  19. Observing .ic TLD against authoritative nameservers serving samsung.com. No information of them anywhere.

    $ dig ns samsung.com +short
    auth04.sam.ic.
    auth02.nhn.ic.
    auth01.nhn.ic.
    dns-gi2.samsung.com.
    auth02.sam.ic.
    dnssm.samsung.com.
    dns-awskr1.samsung.com.
    dnssm2.samsung.com.
    dnsst.samsung.com.
    dnsst2.samsung.com.
    auth03.nhn.ic.
    auth04.nhn.ic.
    auth01.sam.ic.
    auth03.sam.ic.
    dns-gi1.samsung.com.

    Maybe some internal thingy? Thoughts?

    #DNS #Authoritative #Nameservers

  20. How good (or a bad) idea is to run ones own authoritative nameservers?

    Any tips/tricks/suggestions or gotyas to remember?

    #dns #authoritative #nameservers

  21. How good (or a bad) idea is to run ones own authoritative nameservers?

    Any tips/tricks/suggestions or gotyas to remember?

    #dns #authoritative #nameservers

  22. How good (or a bad) idea is to run ones own authoritative nameservers?

    Any tips/tricks/suggestions or gotyas to remember?

    #dns #authoritative #nameservers

  23. How good (or a bad) idea is to run ones own authoritative nameservers?

    Any tips/tricks/suggestions or gotyas to remember?

    #dns #authoritative #nameservers

  24. How good (or a bad) idea is to run ones own authoritative nameservers?

    Any tips/tricks/suggestions or gotyas to remember?

    #dns #authoritative #nameservers

  25. 🤬 Why does #Linux (or rather #glibc) have a limit on 3 (in words: three) #DNS #nameservers‽ 🤌

    I want to have two IPv4 and two #IPv6 DNS servers listed as #nameserver in my /etc/resolv.conf. That's four DNS servers.

    Should I throw dices which one I list last and hence will get ignored and never used? (Yeah, the probably best workaround is to use #anycast. Cracking a nut with a sledgehammer…)

  26. For some research, I am setting up some authoritative #nameservers. My server-software of choice is #KnotDNS. My domain is registered at Namecheap. Now, I am struggling with setting up the glue records for #ipv6. By any chance, is it not yet implemented?!

    Whenever, I add my IPv6 into the "IP" field, it asks to "provide a valid IP address".

    #dns

  27. For some research, I am setting up some authoritative #nameservers. My server-software of choice is #KnotDNS. My domain is registered at Namecheap. Now, I am struggling with setting up the glue records for #ipv6. By any chance, is it not yet implemented?!

    Whenever, I add my IPv6 into the "IP" field, it asks to "provide a valid IP address".

    #dns

  28. Had some strange charges in GCP so had to deal with that. Also setting up a role to manage NS records for static website and thoughts on a Cloud Center of Excellence.
    ~~
    #gcp #cloud #security #aws #route53 #domains #nameservers #centerofexcellence
    ~~
    medium.com/cloud-security

  29. Had some strange charges in GCP so had to deal with that. Also setting up a role to manage NS records for static website and thoughts on a Cloud Center of Excellence.
    ~~
    #gcp #cloud #security #aws #route53 #domains #nameservers #centerofexcellence
    ~~
    medium.com/cloud-security

  30. Had some strange charges in GCP so had to deal with that. Also setting up a role to manage NS records for static website and thoughts on a Cloud Center of Excellence.
    ~~
    #gcp #cloud #security #aws #route53 #domains #nameservers #centerofexcellence
    ~~
    medium.com/cloud-security

  31. Had some strange charges in GCP so had to deal with that. Also setting up a role to manage NS records for static website and thoughts on a Cloud Center of Excellence.
    ~~
    #gcp #cloud #security #aws #route53 #domains #nameservers #centerofexcellence
    ~~
    medium.com/cloud-security

  32. Had some strange charges in GCP so had to deal with that. Also setting up a role to manage NS records for static website and thoughts on a Cloud Center of Excellence.
    ~~
    #gcp #cloud #security #aws #route53 #domains #nameservers #centerofexcellence
    ~~
    medium.com/cloud-security