>If your nameservers answer nslookup properly, then you have no 
>problem.  If DIG returned different results,

dig says his W2K DNS is not answering authoritatively for his domain, but 
as he pointed out, it is answering correctly, even if the "quality 
indicator" is not present.

Since I have helped setup a W2K DNS as master with BIND8 as slave, I know 
W2K DNS can answer authoritatively, I'm just trying to find out why his 
doesn't. His W2K forward zone is fine.

>the nameserver DIG was using was different

nope, I was digging @ his DNS, both of them, plus GraniteCanyon.

>(or it used the same nameserver, but queried it at a different time, when 
>there was different information there).

nope, his DNS has not answered authoritatively ime, and right now still 
does not.

>It is important to remember to use the proper server(s).  First, check to 
>see what the root servers are using (query a root server for the NS 
>records for your domain).

no pb there, delegation is perfect

>   Then, make sure to use EACH server in nslookup (or DIG or whatever tool 
> you choose to use).

did that, both of his are non-auth, BUT both GraniteCanyon's ns are auth 
for his domain.

>If you use nslookup on one of your nameservers, it is quite possible that 
>another nameserver may return different results.

nope, he's done a very good job of setting everyhing up, even his reverse 
delegation is perfect.

imo, there's something internal to his W2K DNS that isn't happy and is 
preventing his DNS from answering authoritatively.  In BIND, the typical 
cause is a syntax error in the zone file or named.conf, but his zone file, 
as written out by W2K DNS, is fine.

Len

Please visit http://www.ipswitch.com/support/mailing-lists.html 
to be removed from this list.

Reply via email to