Is it possible to restrict DNSOnly server from synchronizing back to
Is there any way to restrict DNS synchronization from a DNSOnly server back to a regular cPanel server? If Server A (regular license) is setup to Write-only to Server B and Server C (both DNSOnly) via clustering, I would like to prevent Server A's admin from changing the DNS Roles for Servers B and C to Synchronize Changes. I'd like to do this because I don't want the Server A admin to have access to other zones that are on Servers B and C (put there, perhaps, by a Server D that is also setup to Write-only to Servers B and C).
-
Hey there! I don't have a way to restrict that - if someone has root access to Server A they would be able to make that change if they wanted. However, only root would be able to do that so it shouldn't become an issue as long as only the necessary people have access to that machine.
0 -
Ok... I thought that might be the case. I don't really care about A making changes to their own respective zones on B and C, I just don't want them to be able to receive all the other zones (such as those owned by Server D) if they go into WHM and change the role from Write-only to Synchronize Changes. Unless, "Synchronize Changes" would only affect the zones that are already on Server A (in which case, it's irrelevant).
0 -
If they have access to the root on both the webserver and a DNSOnly machine, I suppose they could set that up to happen, but with root access there's no way around it. If they only have access to the webserver though, it shouldn't be possible.
0
Please sign in to leave a comment.
Comments
3 comments