BIND explained
BIND (Berkeley Internet Name Domain, previously: Berkeley Internet Name Daemon) is the most commonly used DNS server on the Internet, especially on Unix-like systems, where it is a de facto standard. Supported by Internet Systems Consortium. BIND was originally created by four graduate students with CSRG at the University of California, Berkeley and first released with 4.3BSD.Paul Vixie started maintaining it in 1988 while working for DEC.
A new version of BIND (BIND 9) was written from scratch in part to address the architectural difficulties with auditing the earlier BIND code bases, and also to support DNSSEC (DNS Security Extensions). Other important features of BIND 9 include: TSIG, DNS notify, nsupdate, IPv6, rndc flush, views, multiprocessor support, and an improved portability architecture.It is commonly used on Linux systems.
BIND was originally written in the early 1980s under a DARPA grant. In the mid-1980s, DEC employees took over BIND development. One of these employees was Paul Vixie, who continued to work on BIND after leaving DEC. He eventually helped start the ISC, which became the entity responsible for maintaining BIND.
The development of BIND 9 was done with a combination of commercial and military contracts. Most of the features of BIND 9 were funded by UNIX vendors who wanted to ensure that BIND stayed competitive with Microsoft's DNS offerings; the DNSSEC features were funded by the US military who felt that DNS security was important.
Unlike many Internet applications, BIND requires that systems administrators fully qualify domain names in certain contexts all the way to the root, for example, 'www.web-hosting-top.com.' (note the trailing '.'). The following is an example of what can result when systems administrators forget this critical caveat:
;; QUESTION SECTION:
; www.web-hosting-top.com. IN A
;; AUTHORITY SECTION:
;web-hosting-top.com. 7134 IN 80.121.204.234.
Like Sendmail, WU-FTPD, and other systems dating back to the earlier laissez-faire days of the Internet, BIND 4 and BIND 8 have had a large number of serious security vulnerabilities over the years and as such their use is now strongly discouraged.P. Hudson, A. Hudson, B. Ball, H. Duff: Red Hat Fedora 4 Unleashed, page 723. Sams Publishing, 2005 ISBN 0-672-32792-9 BIND 9, being a rewrite, has a much better security history.
A new version of BIND (BIND 9) was written from scratch in part to address the architectural difficulties with auditing the earlier BIND code bases, and also to support DNSSEC (DNS Security Extensions). Other important features of BIND 9 include: TSIG, DNS notify, nsupdate, IPv6, rndc flush, views, multiprocessor support, and an improved portability architecture.It is commonly used on Linux systems.
History
BIND was originally written in the early 1980s under a DARPA grant. In the mid-1980s, DEC employees took over BIND development. One of these employees was Paul Vixie, who continued to work on BIND after leaving DEC. He eventually helped start the ISC, which became the entity responsible for maintaining BIND.
The development of BIND 9 was done with a combination of commercial and military contracts. Most of the features of BIND 9 were funded by UNIX vendors who wanted to ensure that BIND stayed competitive with Microsoft's DNS offerings; the DNSSEC features were funded by the US military who felt that DNS security was important.
Criticisms
Unlike many Internet applications, BIND requires that systems administrators fully qualify domain names in certain contexts all the way to the root, for example, 'www.web-hosting-top.com.' (note the trailing '.'). The following is an example of what can result when systems administrators forget this critical caveat:
;; QUESTION SECTION:
; www.web-hosting-top.com. IN A
;; AUTHORITY SECTION:
;web-hosting-top.com. 7134 IN 80.121.204.234.
Security
Like Sendmail, WU-FTPD, and other systems dating back to the earlier laissez-faire days of the Internet, BIND 4 and BIND 8 have had a large number of serious security vulnerabilities over the years and as such their use is now strongly discouraged.P. Hudson, A. Hudson, B. Ball, H. Duff: Red Hat Fedora 4 Unleashed, page 723. Sams Publishing, 2005 ISBN 0-672-32792-9 BIND 9, being a rewrite, has a much better security history.
📣 Latest tweets mentioning BIND
📖 Latest blogs mentioning BIND
🏆 Semrush 5,917,099▼ - 📅 - TelemaxX ermöglicht 100Gbit/s-Anbindung für KI-affine Start-ups, Mittelstand und Industrie - Mit dem Ausbau des eigenen Glasfaser-Backbones auf 400Gbit/s schafft TelemaxX die Grundlage für 100Gbit/s-Kundenanschlüsse – bei souveräner Datenspeicherung in Deutschland.
🏆 Semrush 2,800,327▲ - 📅 - sslTrus CaaS Major Upgrade: Independent Subscriptions and Flexible SSL Binding - sslTrus CaaS now separates its automation subscription from an individual certificate. Flexible binding and rebinding make the automation service easier to reuse when certificates or infrastructure change.
🏆 Semrush 5,917,099▼ - 📅 - Sundown in White – Ein Sommerabend, der verbindet. - Manchmal sind es genau diese Momente, die zeigen, was ein Unternehmen wirklich ausmacht.Unter dem Motto „Sundown in White“ haben wir unser diesjähriges Sommerfest in den Rheinterrassen gefeiert. Bei sommerlichen Temperaturen, einem beeindruckenden ...
📋 Latest news about BIND
Dynatrace To Acquire Bindplane for AI Observability Data - 📅 - Dynatrace (dynatrace.com) (instagram.com) (linkedin.com) is moving to strengthen its position in AI-driven observability, announcing plans to acquire telemetry pipeline specialist Bindplane as enterprises struggle to manage exploding volumes of operational data. The deal highlights a growing shift toward data-centric ...
Afilias Sponsors ISC and BIND 10 Deployement Initiative - 📅 - Company joins Steering Committee to help oversee the next evolution of the DNS. Afilias, a provider of registry services, today announced that it is a sponsor of Internet Systems Consortium (ISC) and its BIND 10 development effort. The company states that it joins other industry leaders as a financial ...
ISC Releases BIND 9.3 Beta - 📅 - Internet Systems Consortium (ISC.org), a non-profit organization dedicated to supporting the infrastructure of the Internet, said last week that it has released a beta version of BIND 9.3, the latest version of the open source DNS software that runs on over 75 percent of the Internet's name servers. ISC said BIND 9.3 ...