acidsatyr wrote: » That's what i was getting at - and i completely agree with you - there must be something set in that DNS query/response message which will say "I'm the authoritative server" otherwise the query for host will fail. This is in contrast when i would just want to deploy a simple dns server which asnwers for local queries (and is not authoritative). I guess now i'm just wondering what is itwhich indicates outside client (some other local caching dns server) that server is or isn't authoritative. The authoritative dns server doesn't answer with NS record only A record for final ip address.