Froxlor icon indicating copy to clipboard operation
Froxlor copied to clipboard

PowerDNS Native Mode: Do not include allow-axfr-ips in config

Open Af0x opened this issue 2 years ago • 6 comments

Hello,

when the PowerDNS operation mode is set to "Native", the generated config still contains the allow-axfr-ips setting.

Regards,

Af0x

Af0x avatar Oct 20 '21 16:10 Af0x

Additionally, the Master setting should not be set for Native Mode, see https://doc.powerdns.com/authoritative/modes-of-operation.html#native-replication

Af0x avatar Oct 21 '21 00:10 Af0x

So basically, because froxlor allows to specify axfr ips, it makes no sense at all to have the pdns set to NATIVE at all...

d00p avatar Oct 21 '21 10:10 d00p

When running in native mode one can replicate the database via mysql. In this case the "Master" should not sent out notifies etc.

Af0x avatar Oct 21 '21 10:10 Af0x

One more addition: I found that in native mode the domainmetadata table gets filled with ALLOW-AXFR-FROM data. Also this is not necessary in native mode (I believe).

Af0x avatar Oct 21 '21 10:10 Af0x

Question is, is it just not necessary or is it bad? :)

d00p avatar Nov 04 '21 06:11 d00p

If Master is set and you want Native Mode then it´s unwanted I guess.

Af0x avatar Nov 04 '21 17:11 Af0x