On Fri, 2024-08-30 at 21:30 -0400, Ranbir via FreeIPA-users wrote:
> On Fri, 2024-08-30 at 10:53 +0200, Florence Blanc-Renaud via FreeIPA-
> users wrote:
> > Did you define any dnsforwardzone?
> > ipa dnsforwardzone-find
> 
> That's a negative, too.
> 
> [root@ipa01 ~]# ipa dnsforwardzone-find
> ----------------------------
> Number of entries returned 0
> ----------------------------

I tried flushing bind's cache on both of my IdM servers: no change, the
domain lookup still fails.

I tried using resolvectl on my Fedora 40 desktop to run a query for
rbaccess.rogersbank.com and got this:

ranbir@master:~$ sudo resolvectl query rbaccess.rogersbank.com
rbaccess.rogersbank.com: resolve call failed:
'rbaccess.rogersbank.tsysecom.com' does not have any RR of the
requested type

This is obviously incorrect because querying 8.8.8.8 returns the IP:


ranbir@master:~$ dig @8.8.8.8 rbaccess.rogersbank.com

; <<>> DiG 9.18.28 <<>> @8.8.8.8 rbaccess.rogersbank.com
; (1 server found)
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 59781
;; flags: qr rd ra; QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 512
;; QUESTION SECTION:
;rbaccess.rogersbank.com.       IN      A

;; ANSWER SECTION:
rbaccess.rogersbank.com.
125     IN      CNAME   rbaccess.rogersbank.tsysecom.com.
rbaccess.rogersbank.tsysecom.com. 0 IN  A       67.231.80.94

;; Query time: 60 msec
;; SERVER: 8.8.8.8#53(8.8.8.8) (UDP)
;; WHEN: Wed Sep 04 11:20:41 EDT 2024
;; MSG SIZE  rcvd: 111


I'm still clueless as to why named in IdM is not working for that
domain.


-- 
Ranbir

-- 
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to