DNS BIND9 acl clause – they *can* be nested
Posted by jpluimers on 2017/11/16
One of the use cases of DNS acl I needed involved having some data to be duplicated across acl.
So I was looking at some way to de-duplicate and found out the term for that is nesting which the bind acl allow.
- [WayBack] DNS BIND9 acl clause and [WayBack] BIND9 named.conf Definition of Address List Match have examples but don’t really refer to any standard.
- [WayBack] Chapter 7. BIND 9 Security Considerations – Access Control Lists explains it towards the end: right before [WayBack] Chapter 7. BIND 9 Security Considerations – Chroot and Setuid starts.
–jeroen






Leave a comment