Last modified 6 months ago Last modified on 04/25/16 11:23:41


This is a new LDAP driver for BIND9.

It allows you to read data and also write data back (DNS Updates) to an LDAP backend.

Currently this driver uses unofficial "dynamic database" API. You will need patches for official BIND9.

Documentation and support

Lastest documentation is available inside README in Git.

More detailed information is in wiki articles:

This plugin is used extensively by FreeIPA project. Best place to post your questions is freeipa-users mailing list. You can also look into mailing list archive.

Did you encounter a bug? Please follow bug reporting guideline. Thank you!

TODO: information missing on this wiki

Source code

The latest release is available at

Web interface to git repository is available at


Notes about Fedora package release process

Design documents

(please read General considerations)


Notes about BIND internals

Design goals and core decisions

  • bind-dyndb-ldap was developed for needs of FreeIPA project (but it can be used independently, e.g. with OpenLDAP)
  • FreeIPA defines most of bind-dyndb-ldap's high-level goals
  • Today, some functionality and code overlaps with existing software. The open question is if we should do something about it, and what happens if we do not do anything. For further details see article about Maintainability.