> You must also configure which zones are delegation only > in /etc/named.conf. The following lines should fix what > verisign has done: > > zone "com" { > type delegation-only; > }; > > zone "net" { > type delegation-only; > }; Check this, from bind-users. There's other TLDs to consider. http://marc.theaimsgroup.com/?l=bind-users&m=106381026914422&w=2