[dns-operations] Best Practices in DNS security

Jim Reid jim at rfc1035.com
Sat Mar 18 00:07:32 UTC 2006

On Mar 17, 2006, at 18:35, Geo. wrote:

> Because there are an aweful lot of Windows servers out there  
> running MSdns
> and you can't run 2 instances of it on one machine. Not everyone  
> runs bind.

Exposing Windows boxes to the internet isn't a smart thing to do.  
Running name servers on said boxes is even less smart. And if someone  
*really* has to do that AND requires 2 instances of the name server  
process (or whatever Windows calls a running program), they should  
choose software which is capable of doing that. Whether that software  
is (or isn't) BIND is beside the point.

