Recursion in BIND
Afternoon watch, 8 bells (4:19 pm)

Someone complained to me today that our BIND servers allowed recursion, which basically means they resolve names that they aren't specifically authoritative for. Now this is the way I planned it—we use these nameservers to resolve for our local network clients as well as being authoritative for the domains we own.

Anyway, BIND supports an allow-recursion tag under the options section where you can define an ACL (Access Control List) for allowed recursion clients. So I happily added it, with my ACL list, but my computer stopped working. I could dig at our other nameservers and resolve fine, but not on my own (my desktop). Turns out, I didn't add to the ACL! Doh!

Here's how you need to do it. In your /etc/named.conf file:

acl internal {;;

Make sure you add in any public IP addresses you need there as well, especially if you've got more than one network card in the nameserver.

Then, under the options section of named.conf, add:

allow-recursion { internal; };

Yay for recursion!

Ultimate Irony
Forenoon watch, 2 bells (9:02 am)

Wow, lots of funny news today to report. How about this one: a marriage counselor has an affair with one of his patients.

Yay for irony!

The Cure I’ve Been Waiting For
Forenoon watch, 1 bell (8:58 am)

Here is the cure for hay fever I've been waiting for all my life. I bet there's a few other things it'll cure, too.

Yay for snogging!

Singing Keyboard Prank
Forenoon watch, 1 bell (8:43 am)

Go read about how to take a singing greeting card and use it as a prank on somebody's keyboard.

Yay for keyboards!

Yard Pictures
Morning watch, 8 bells (8:26 am)

Now that things are growing pretty well, here are a few pictures I snapped this morning of our front yard.

Flowerbed - Small

Yard - Small

Side - Small

Yay for flowers!

Happy Anniversary To Me!
Morning watch, 7 bells (7:53 am)

Today is my (and Lorien's) First Wedding Anniversary!

Yay for us!

