>If your nameservers answer nslookup properly, then you have no
>problem. If DIG returned different results,
dig says his W2K DNS is not answering authoritatively for his domain, but
as he pointed out, it is answering correctly, even if the "quality
indicator" is not present.
Since I have helped setup a W2K DNS as master with BIND8 as slave, I know
W2K DNS can answer authoritatively, I'm just trying to find out why his
doesn't. His W2K forward zone is fine.
>the nameserver DIG was using was different
nope, I was digging @ his DNS, both of them, plus GraniteCanyon.
>(or it used the same nameserver, but queried it at a different time, when
>there was different information there).
nope, his DNS has not answered authoritatively ime, and right now still
does not.
>It is important to remember to use the proper server(s). First, check to
>see what the root servers are using (query a root server for the NS
>records for your domain).
no pb there, delegation is perfect
> Then, make sure to use EACH server in nslookup (or DIG or whatever tool
> you choose to use).
did that, both of his are non-auth, BUT both GraniteCanyon's ns are auth
for his domain.
>If you use nslookup on one of your nameservers, it is quite possible that
>another nameserver may return different results.
nope, he's done a very good job of setting everyhing up, even his reverse
delegation is perfect.
imo, there's something internal to his W2K DNS that isn't happy and is
preventing his DNS from answering authoritatively. In BIND, the typical
cause is a syntax error in the zone file or named.conf, but his zone file,
as written out by W2K DNS, is fine.
Len
Please visit http://www.ipswitch.com/support/mailing-lists.html
to be removed from this list.