RHEL, Centos, Fedora rpm 9.11.0-P1

2016-11-09 Thread Carl Byington
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 http://www.five-ten-sg.com/mapper/bind contains links to the source rpms, and build instructions. This version patches the ISC python code to build/run on the versions of Python that are standard on RHEL/Centos 5,6,7. -BEGIN PGP SIGNATURE-

Re: Question on prod.msocdn.com

2016-11-09 Thread Jim Glassford
On 11/9/2016 2:42 PM, Jim Glassford wrote: On 11/9/2016 4:55 AM, Tony Finch wrote: Jim Glassford wrote: Doing dig +cd on prod.msocnd.com will get the CNAME, without +cd either timeout or SERVFAIL depending on version of bind. It works for me with BIND 9.11 and 9.10.4-P4. There are some EDN

Re: [Ext] Re: Question on prod.msocdn.com

2016-11-09 Thread Jim Glassford
On 11/9/2016 4:55 AM, Tony Finch wrote: Jim Glassford wrote: Doing dig +cd on prod.msocnd.com will get the CNAME, without +cd either timeout or SERVFAIL depending on version of bind. It works for me with BIND 9.11 and 9.10.4-P4. There are some EDNS-related changes in 9.10 which might be why

Re: semicolons in dig output

2016-11-09 Thread Matthew Pounsett
On Fri, Nov 4, 2016 at 13:51 Robert Edmonds wrote: > Matthew Pounsett wrote: > > Was this actually a change between BIND 9.8 and 9.9? Was it deliberate, > or > > an accident that might be reversed at some point? > > It's this change: > > 3953. [bug] Don't escape semi-colon in TXT

Re: Enterprise DNS Architecture - AD and BIND

2016-11-09 Thread Matus UHLAR - fantomas
On Wed, Nov 09, 2016 at 01:11:16AM +, Baird, Josh wrote: I'm not quite sure why you would have your caching servers forward to other DNS servers (Google, OpenDNS, etc). I would enable recursion on them and would not forward anything. I would also consider making these caching servers at ea

Re: Enterprise DNS Architecture - AD and BIND

2016-11-09 Thread Matus UHLAR - fantomas
On 08.11.16 16:09, Ray Van Dolson wrote: What I'm thinking: - Have an AD server at every location we have a BIND server. This way client machines talk DNS *only* to AD servers so Dynamic DNS & friends work reliably. AD servers would then forward to BIND servers as needed. This could wor

Re: Question on prod.msocdn.com

2016-11-09 Thread Tony Finch
Jim Glassford wrote: > > Doing dig +cd on prod.msocnd.com will get the CNAME, without +cd either > timeout or SERVFAIL depending on version of bind. It works for me with BIND 9.11 and 9.10.4-P4. There are some EDNS-related changes in 9.10 which might be why these versions are better able to reso