Bind9 reverse Delegation

I have a client that we are hosting that is using a full class C.  We are wanting to be able to delegate the class C to them for reverse lookups.   How do you set that up in bind?  I am familiar with standard reverse files, I have never had to setup a reverse delegation to another server though.

Thanks.
LVL 1
atebitAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

jlevieCommented:
Assuming that you have in-addr.arpa authority for the Class B that the Class C is part of you can delegate it to them with:

n.n.n.in-addr.arpa.         86400  IN  NS  ns1.their-dom.tld.
n.n.n.in-addr.arpa.         86400  IN  NS  ns2.their-dom.tld.

in the reverse zone for the Class B. This is covered in detail in Chapter 9 of "DNS and BIND".
0
atebitAuthor Commented:
We have in-addr.arpa authority for a /21 (XXX.XXX.128.XXX - XXX.XXX.135.XXX)

Currently today I have a separate in-addr.arpa file for each of my class C's.  Is there a better way to do this?  

0
td_milesCommented:
The Class C reverse zones have already been delegated to you and a zone can only be delegated once (ie. you can't "forward" the delegation on to them). You have two options:

1. contact the authority for the Class B that your Class C addresses fall under and get them to redelegate reverse DNS for the Class C you are giving to the client directly to the clients name servers.
2. Leave your server as authorative for the clients' Class C, but make that Class C zone a slave/secondary to a primary one that the client manages on their name server, that way your server will pull the data from theirs.


Reverse DNS is delegated along the octec boundaries and cannot be aggregated. Each Class C address block is a seperate domain. To compare, think about if you had two domains:

company.com
company2.com

Is there any way of aggregating these two domains into a single file ? No, because they are totally seperate domains, as are each of your Class C address block domains. You can aggregate them for routing purposes, but there is no such aggregation for reverse DNS. (so your method for seperate files for each Class C is correct)

reference:
http://www.acmebw.com/askmrdns/archive.php?category=86&question=403
http://www.he.net/adm/reverse.dns.html

0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
atebitAuthor Commented:
Thanks for the reply.  I really like the slave idea.... That will help with some other issues :)  

0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Linux Networking

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.