Re: BIND 9 recursive queries returning SERVFAIL for 'legit' domain

2020-06-17 Thread Mark Andrews
> On 17 Jun 2020, at 18:45, Ian Springett wrote: > > Hi > I have an issue with BIND 9.14.11 and recursive queries to one particular > domain. DIG result is SERVFAIL and ‘bad cookie’ is logged in > /var/log/messages & /var/log/named.run > > The domain has two DNS servers behind a load

Re: BIND 9 recursive queries returning SERVFAIL for 'legit' domain

2020-06-17 Thread Ondřej Surý
Hi Ian, the first thing you should do is to contact the zone owner to fix their nameservers/load-balancer. The zone/domain might be “legit”, but its nameservers are violating the DNS protocol. Maybe you won’t have to maintain a list of exceptions. If that doesn’t work, this is the

BIND 9 recursive queries returning SERVFAIL for 'legit' domain

2020-06-17 Thread Ian Springett
Hi I have an issue with BIND 9.14.11 and recursive queries to one particular domain. DIG result is SERVFAIL and 'bad cookie' is logged in /var/log/messages & /var/log/named.run The domain has two DNS servers behind a load balancer which is causing the bad cookie result. Would this in itself be