BIND DNS HA

bind-01/02, 52 records, zone transfers

Category

INFRASTRUCTURE

Status

Complete

Premise

Authoritative DNS for inside.domusdigitalis.dev

Goals

  • Primary/secondary with automatic zone transfers

  • Integrate with Vault PKI for dynamic records

  • Replace pfSense DNS Resolver entirely

Current State

Production - All hosts resolving via BIND

Next Steps

  • Add DNSSEC signing

  • Automate record creation via nsupdate API

Architecture Notes

Zone transfer flow: bind-01 (master) → bind-02 (slave)