Koozali.org: home of the SME Server

Legacy Forums => Experienced User Forum => Topic started by: Edd on December 13, 2003, 01:46:04 PM

Title: TinyDns not seen from internet
Post by: Edd on December 13, 2003, 01:46:04 PM
I have set up for my domain to have its name server on my IP running the SME 6beta3. It appears that the reverse dns can be seen from the internet but not the forward dns which is required for it to act as a proper dns server.
The forward DNS works on the local network because mail.e-studio17.net acesses the mail server but not from outside my network due to the forward DNS not working from outside of the network.
The server is set up in Server-Only mode and provides DHCP to my network which supplies my IP's given by my ISP to the computers on my network.

How do I enable djbdns/tinydns on the SME 6beta3 to forward dns from outside of my network so that I do not have to use the DNS server provided by my domain host.

Thank you

[%sig%]
Title: Re: TinyDns not seen from internet
Post by: guestHH on December 13, 2003, 02:36:42 PM
Edd,

please consider using the latest stable 6.0 release instead of the beta which has now become obsolete.

Regards,
guestHH
Title: Re: TinyDns not seen from internet
Post by: Charlie Brady on December 14, 2003, 12:38:35 AM
Edd wrote:

> The server is set up in Server-Only mode and provides DHCP to
> my network which supplies my IP's given by my ISP to the
> computers on my network.

If I've understood correctly this means that your network is exposed to the Internet without a firewall. That doesn't sound a very wise situation.

> How do I enable djbdns/tinydns on the SME 6beta3 to forward
> dns from outside of my network so that I do not have to use the
> DNS server provided by my domain host.

Unless you really know how to configure and run DNS, you're strongly advised to use DNS services provided by someone else (your ISP, or a third party service).

tinydns is by design not visible to the Internet, and I advise you to leave it that way.

Charlie
Title: Re: TinyDns not seen from internet
Post by: Graeme Fleming on December 14, 2003, 07:56:47 AM
Use Zoneedit
Title: Re: TinyDns not seen from internet
Post by: Finchwizard on December 14, 2003, 11:08:23 PM
What about the ppl that don't want to use Zoneedit?

I mean, I need a  DNS Server, we are part of a school. And the server that we will be replacing is a Secondary DNS Server.

I can make another 5.6 Server following the DNS instructions that are around. But that is a bit of a pain.

I would really like to know how to do it for 6. There has to be someway, if anyone can help or give a HowTO that would be AWESOME.

Thanks
Title: Re: TinyDns not seen from internet
Post by: Boris on December 15, 2003, 05:58:56 AM
Yet another poor school with net-admin using bad security practices.
Title: Re: TinyDns not seen from internet
Post by: robert on December 15, 2003, 02:36:59 PM
Do not use your server as a public DNS Server. Yes you can do it.
Why would you though??
The internal DNS to the network is  taken care of by the SME Server. The only thing you are talking about is the FQD Dns . Use ZoneEdit or any other DNS server provider.
DNS is the first to get attacked and you have to be on security like a rash. Yes even TinyDNS.
If you must run a public DNS server run it on a second small machine in the DMZ..
Robert Slater
Title: sme 6 dns for the world
Post by: hanscees on January 26, 2004, 12:37:18 AM
Hi,

I have been trying to understand how tinydns works, but haven't quite got it.

I know the securityrisks, but need an dns server for my domains.
How do you set up tinydns to listen on the outsite?

I found these sites already:
http://www.lifewithdjbdns.org/#The%20Big%20Picture

But this all supposes you set up tinydns from scratch. I do not, I need to add to what mitel has made.

hc