Menu

#1 Peer selection by subdomain

open
nobody
None
5
2004-09-30
2004-09-30
mr_mischief
No

It would be useful (for my configuration at least) to be
able to select a peer by subdomain.

Currently, a hostname just resolves to an IP address and
the peer sections are checked against that IP address
by netmask.

Having many NASes in many parts of the country
managed by many different teams, it would be great if
we didn't have to keep a list of IP addresses for the
NASes (acting as LACs, in this case).

A format that differentiates between a hostname (for
compatibility with current configs) and a subdomain (for
future use of this feature) is desirable. A leading dot, as
is used in certain other software, would be a good
indicator. For example, "nas23.foo.com" would be a
hostname, while ".nas.bar.net" would be a subdomain.

I realize there could be security implications, but that's a
policy issue. It could also be mitigated somewhat by
making sure forward and reverse records match.

Discussion


Log in to post a comment.