Re: DNS forwarding

2017-05-22 Thread Elias Pereira
Hello guys, thanks for all the answers!!! I was provisioning the AD in the wrong way. As we have our main DNS and it is authoritative for our domain "example.com" I needed to create a subdomain "sandom.example.com" so that AD DNS would be authoritative only for "samdom". Now everything is

named-compilezone errors

2017-05-22 Thread Chris Buxton
I'm having trouble using named-compilezone on a zone, and I was wondering if I'm doing something wrong or if perhaps I've found a bug (or two). I apologize in advance for the sanitizing of the zone name, but it's not my zone and I can't share it. named-compilezone -i none -k ignore -o

Re: dkim cname records replication

2017-05-22 Thread McDonald, Daniel (Dan)
In this case, Microsoft names the records selector1._domainkeys.example.com and selector2._domainkeys.example.com. The poster said he was running bind 9.9.5, which to my knowledge doesn't support leading underscores without check-names ignore. Get Outlook for iOS On

Re: dkim cname records replication

2017-05-22 Thread Mark Andrews
In message , "McDonald, Daniel (Dan)" writes: > In this case, Microsoft names the records > selector1._domainkeys.example.com and selector2._domainkeys.example.com. > The poster said he was running bind 9.9.5, which to my

Re: dkim cname records replication

2017-05-22 Thread McDonald, Daniel (Dan)
That's great! I've disabled checknames for over a decade because I couldn't get AD to work without it when I first set it up, and hadn't tried without it since. I'll go play in the lab tomorrow and see if I can turn that back on in production with the squirrelly version my distro provides (

Re: How to generate authoritative DNS64 reverse zone

2017-05-22 Thread Aleksi Suhonen
Hi, On 05/20/2017 01:48 AM, Mark Andrews wrote: > In message <57bf558b-f4eb-f2e4-c27c-9447ff4dd...@axu.tm>, Aleksi Suhonen > writes: >> So how do I configure Bind9 to generate one authoritative DNS64 reverse >> zone that contains CNAMEs to in-addr.arpa, but otherwise not mess with >> anything?

Re: DNS forwarding

2017-05-22 Thread Barry S. Finkel
On Wed, 17 May 2017 17:44:12, Elias Pereira wrote: Hello, Our scenario today consists of one: - DNS Server (Authoritative to our subdomains. Ex: www.mydomain.com*, moodle.mydomain.com, etc) - samba3 PDC server - Openldap server (user base for samba) All our IPs are

dkim cname records replication

2017-05-22 Thread Vidal Garza
Hello List, I have this question about replication. I have a replication between BIND 9.9.5-3. We try to make dkim work with Microsoft office 365. In the documentation they said that it should be a CNAME record with the sectors and it works in the master. The problem is in the slave, with the

Re: dkim cname records replication

2017-05-22 Thread McDonald, Daniel (Dan)
You need to add “check-names ignore; “ to the zone definition when dealing with active directory. That ignores the invalid underscore character. From: bind-users on behalf of Vidal Garza Date: Monday, May 22, 2017 at 10:31 To: Bind

Re: DNS forwarding

2017-05-22 Thread Grant Taylor via bind-users
On 05/22/2017 01:36 PM, Elias Pereira wrote: I was provisioning the AD in the wrong way. As we have our main DNS and it is authoritative for our domain "example.com" I needed to create a subdomain "sandom.example.com" so that AD DNS would be authoritative only for "samdom". You don't have

Re: dkim cname records replication

2017-05-22 Thread Mark Andrews
In message , Vidal Garza writes: > > Hello List, > > I have this question about replication. > > I have a replication between BIND 9.9.5-3. > We try to make dkim work with Microsoft office 365. In the documentation >

Re: dkim cname records replication

2017-05-22 Thread Mark Andrews
In message , "McDonald, Daniel (Dan)" writes: > You need to add check-names ignore; to the zone definition when dealing > with active directory. That ignores the invalid underscore character. DKIM is not active directory. Named can serve