On this page
Overview
BIND 9 is a DNS server implementation and administration toolkit for operating DNS infrastructure. named can serve authoritative zones, perform recursive resolution, or forward queries, while supporting features such as automated DNSSEC signing and split-horizon views. The distribution also includes tools such as dig, nsupdate, and rndc.
Features and best fit
Based on official documentation; not hands-on tested · Content checked:
Key features
Cover multiple DNS roles and DNSSEC operations
named can act as an authoritative server, recursive resolver, DNS forwarder, or combine those roles. It also provides views for split-horizon DNS, automatic DNSSEC zone signing and key management, and catalog zones for provisioning zone data across a server fleet.
Sources: [1]
Use bundled tools for inspection, updates, and administration
The distribution includes dig and delv for DNS lookups, nsupdate for dynamic updates, and rndc for remote administration. Response policy zones, response-rate limiting, and recursive-query limits provide controls for malicious data and denial-of-service pressure.
Sources: [1]
Best fit
Fits teams that need direct control over DNS infrastructure
BIND 9 fits organizations operating authoritative or caching DNS and environments that require detailed policy through DNSSEC, split-horizon DNS, or catalog zones. It is also useful when diagnostic, update, and administration tools should come from the same project.
Before adoption
Plan role separation, build dependencies, and the contribution path
Building from source requires a C11 compiler, Meson 1.3.0 or newer, Ninja or Samurai, OpenSSL, libuv, Userspace RCU, and other dependencies. DoH, LMDB, GeoIP2, and DNSTAP add optional library requirements depending on the selected features.
The GitHub repository has archived=false, but its description identifies it as a mirror of ISC GitLab. Issues and merge requests should go to GitLab. Production DNS deployments also need an explicit design for separating authoritative and recursive roles, access control, and security updates.
Official sources
- [1]BIND 9 README at reviewed commit(2026-10-04)
- [2]BIND 9 build guide at reviewed commit(2026-10-04)
Supplemental curator note
When comparing DNS infrastructure, evaluate operational separation between authoritative and recursive roles and the process for applying security updates, not only feature breadth. GitHub is a mirror; issues and merge requests belong in ISC GitLab.
Try it in 3 steps
- 1
Get the official source
Clone from ISC GitLab as directed by the GitHub README, then pin the reviewed commit.
git clone https://gitlab.isc.org/isc-projects/bind9.git && cd bind9 && git checkout 5375ad93021c4737239c0cd5bc8ef5c20e6c35ce - 2
Build BIND 9
Install a C11 compiler, Meson 1.3.0 or newer, Ninja or Samurai, and the required libraries first.
meson setup build-dir && meson compile -C build-dir - 3
Run the tests
Run the available tests from the configured build directory and inspect the results.
meson test -C build-dir
Growth
Growth trends · Last 30 days
779 Stars
Trend data is still being collected.
Development activity
Last 90 days · weekly
- Commits (last 30 days)
- 258
- Open PRs
- 0
Development activity is still being collected.
Built with
Categories and tags
Categories
GitHub data
GitHub dataView detailed GitHub data
GitHub Topics
- dns-server
- dns
- isc
Related information
Write a related articleShare a guide or use case for this OSS in Markdown. Articles are published after administrator approval.
Explore next
- Zabbix6,435 Stars
2 shared tag(s)
Unify discovery, metrics, alerting, and root-cause analysis across servers, networks, and cloud
Go Template - MediaWiki5,192 Stars
2 shared tag(s)
the extensible collaborative wiki behind Wikipedia
PHP - curl43,033 Stars
1 shared tag(s) · 1 shared category(s) · Same language
share URL-based transfer capabilities between a CLI and libcurl
C - SoftEther VPN13,607 Stars
1 shared tag(s) · 1 shared category(s) · Same language
Terminate SSL-VPN, WireGuard, OpenVPN, IPsec, L2TP, SSTP, and other protocols on one cross-platform VPN server
C - Eclipse Mosquitto11,246 Stars
1 shared tag(s) · 1 shared category(s) · Same language
run an MQTT 5.0/3.1.1/3.1 broker with pub/sub CLI tools and C/C++ client libraries for lightweight messaging
C - Wireshark9,954 Stars
1 shared tag(s) · 1 shared category(s) · Same language
Capture, filter, and dissect packets with the Wireshark GUI and TShark for deep protocol and traffic analysis
C
Report incorrect information
Tell us if any listing information is incorrect or outdated.