Re: Noob : Is BIND necessary for mail server ?

From: LLFormat (dev-null_at_localhost.localdomain)
Date: 07/27/03


Date: Sun, 27 Jul 2003 22:45:51 +0100

On Sun, 27 Jul 2003 18:24:49 +0000, Kevin_Fries typed the following stuff
:

> The recommendation for BIND comes not so much for internal resolution, but
> to cache external resolution. Another DNS that will also work fine is
> djdns from the guy that made qmail. You are using qmail, Procmail, or
> Exim I hope... Please tell me you aren't using Sendmail... Its such a
> security hole, I am suprised Microsoft hasn't suit for copyright
> infringement.

 Hi Kevin,

 This is my first mail server set up, and I can say that I now have it up
and running and to be quite honest, I'm very pleased with the results.

 It is sendmail I'm running, version 8.12.8-5.90. Despite what security holes it may have,
I'm kind of thrilled to have it working so well, even if it did give me a
bit of a headache initially.

 I will have to have a google at the security holes found in sendmail, but
for now I'm just pleased that my 'project' has been successful. I've
installed ipop3 on my mail server now, and can send and retrieve mail from
it using Mozilla Mail with no problems. For someone like me, with just an
amateurs-eye view of computers, this is a real result. I'm going to have a
look at how ipop3 intergrated so well, without me having to do any more than
supply the connection details for the mail client to use.

> The idea is this, the mail server can not send a message to
> gbush@whitehouse.gov (put that one in for the spammers.... enjoy). Instead
> your mail server will need to resolve whitehouse.gov into an IP address.
> Thus the DNS server. If you rely upon your ISPs dns server, you will be
> sending all that traffic across your pipe, and generally slowing down your
> connectivity. So, the idea is to set up a DNS server, even if it is only
> a caching DNS Server, locally to prevent all that traffic from flooding
> your upstream. However, since you only have a two machine network, you
> will probalby be OK if you went without. I would set one up, but would
> probably go with DJ Berstein's server instead of BIND since it is smaller
> and much less resource intensive.
>
> HTH
> Kevin Fries

Thank you for the information there. I went and had a play with BIND after
reading a bit about the Domain Name Service and A, CNAME and MX records.

Again, I ran into problems. Although the server appeared to be running, ie
it restarted no problem after any modifications, I noticed in
redhat-config-services that 'named' had 'rndc: connect failed: connection
refused' in the status box. I appear to have the rdnc.conf and the key
file, so I don't really know what's going on there.

I was wondering if I needed it (DNS), and I would welcome the benefits of
reducing any unwanted traffic on my 1024/256Kbps line, so I'll look into
the alternative you suggested.

Many thanks for your input.

Regards,

LLFormat.



Relevant Pages

  • Issues migrating SBS 2003 domain to Server 2008 Standard
    ... We are stuck migrating our SBS 2003 domain to Server 2008. ... Fatal Error:DsGetDcName (SRV-EXCH) call failed, ... Verify your Domain Name Sysytem (DNS) is ... network connectivity to a domain controller. ...
    (microsoft.public.windows.server.sbs)
  • Re: AD management snap in cannot find DC (netdiag /v workstation)
    ... The name.local entries are used by my apache server to implement ... change button, more button, the "Primary DNS suffix of this ... Attr: subschemaSubentry ... Owner of the binding path: ...
    (microsoft.public.windows.server.active_directory)
  • Re: AD management snap in cannot find DC (netdiag /v workstation)
    ... button, more button, the "Primary DNS suffix of this computer", it should ... The Security System could not establish a secured connection with the server ... Attr: subschemaSubentry ... Owner of the binding path: ...
    (microsoft.public.windows.server.active_directory)
  • Re: AD management snap in cannot find DC (netdiag /v workstation)
    ... DNS Host Name: tonyb-pc.imageproc.imageproc.com ... Testing IpConfig - pinging the DHCP Server... ... Attr: subschemaSubentry ... Owner of the binding path: ...
    (microsoft.public.windows.server.active_directory)
  • Re: How to prevent DC from trying to register on root DNS servers
    ... The dynamic registration of the DNS record '. ... DNS server IP address: ... If you are hosting a public domain on the internet, and you host your own email, then I would create an MX record to tell the rest of the world what the mail exchanger is. ... They are only for MTA to MTA (mail server to mail server) communication. ...
    (microsoft.public.windows.server.dns)