Re: bind dies with assertion failure

2012-07-03 Thread Evan Hunt
On Mon, Jul 02, 2012 at 07:16:40PM -0500, Oscar Ricardo Silva wrote: I *THINK* I found the reason for why we're exposed to this bug ... It would appear that Redhat based their BIND package on 9.8.2rc1. Guess where the patch for this bug was applied? 9.8.2rc2. Sigh. It wouldn't be the

Re: bind dies with assertion failure

2012-07-03 Thread Phil Mayers
On 07/03/2012 01:16 AM, Oscar Ricardo Silva wrote: I *THINK* I found the reason for why we're exposed to this bug ... It would appear that Redhat based their BIND package on 9.8.2rc1. Guess where the patch for this bug was applied? 9.8.2rc2. Are you sure about this? From what I can see in

Re: Bind 9.8.1-P1 is crashing again and again

2012-07-03 Thread Cathy Almond
On 02/07/12 14:32, Gaurav Kansal wrote: Dear Team, My BIND DNS Server is crashing again and again. I am getting these logs: Jul 2 12:03:33 gaurav named[30523]: query.c:5379: INSIST(!is_zone) failed, back trace Jul 2 12:03:33 gaurav named[30523]: #0 0x805a7a5 in

RE: bind dies with assertion failure

2012-07-03 Thread Lightner, Jeff
As mentioned more than once on this list. Redhat starts with an upstream version of a given package (say BIND 9.7) then backports security and bug fixes from later upstream versions into theirs and add extended versioning (say 9.7-2.3.1). One would have to check Redhat's version to see what

Re: bind dies with assertion failure

2012-07-03 Thread WBrown
Oscar Ricardo Silva wrote on 07/02/2012 06:40:51 PM: The reason I'm running is that we're currently running the stock version of BIND available with RHEL6. It's their policy to backport patches and if there's a patch available then they may apply it faster rather than deploying a new

getting edns disabling message in logs

2012-07-03 Thread Ben
Hi, We run bind as caching only dns server for our customers.In logs, i can see so many entries which tells success resolving 'malayalam.samachar.com/A' (in '.'?) after disabling EDNS success resolving 'm.sify.com/A' (in '.'?) after disabling EDNS success resolving 'planetradiocity.com/A' (in

Re: getting edns disabling message in logs

2012-07-03 Thread Tony Finch
Ben benjo11...@gmail.com wrote: We run bind as caching only dns server for our customers. In logs, i can see so many entries which tells success resolving 'x.y.z/A' (in '.'?) after disabling EDNS How to check that current bind installation has EDNS enabled or ? what could be reason behind

Re: bind dies with assertion failure

2012-07-03 Thread Oscar Ricardo Silva
07/03/2012 01:16 AM, Oscar Ricardo Silva wrote: I *THINK* I found the reason for why we're exposed to this bug ... It would appear that Redhat based their BIND package on 9.8.2rc1. Guess where the patch for this bug was applied? 9.8.2rc2. Are you sure about this? From what I can see in

Re: bind-users Digest, Vol 1247, Issue 1

2012-07-03 Thread Oscar Ricardo Silva
Message: 1 Date: Mon, 02 Jul 2012 17:40:51 -0500 From: Oscar Ricardo Silva osc...@mail.utexas.edu To: bind-users@lists.isc.org Subject: Re: bind dies with assertion failure Message-ID: 4ff22373.2000...@mail.utexas.edu Content-Type: text/plain; charset=ISO-8859-1; format=flowed I may have

Re: bind dies with assertion failure

2012-07-03 Thread Oscar Ricardo Silva
(Sorry, forgot to include the right Subject line so re-sending) Message: 1 Date: Mon, 02 Jul 2012 17:40:51 -0500 From: Oscar Ricardo Silva osc...@mail.utexas.edu To: bind-users@lists.isc.org Subject: Re: bind dies with assertion failure Message-ID: 4ff22373.2000...@mail.utexas.edu

RE: bind dies with assertion failure

2012-07-03 Thread Lightner, Jeff
I disagree about this being off topic. It IS in fact a BIND question but like many BIND implementations is specific to the user's setup. -Original Message- From: bind-users-bounces+jlightner=water@lists.isc.org [mailto:bind-users-bounces+jlightner=water@lists.isc.org] On

RPM [was: Re: bind dies with assertion failure]

2012-07-03 Thread Jan-Piet Mens
While it's always better to compile and install from the latest stable version, it's also nice to use their package management system especially when you have to deal with multiple systems. Building BIND is easy; turning it into an installable RPM not so. I highly recommend fpm [1] which makes

Re: RPM [was: Re: bind dies with assertion failure]

2012-07-03 Thread WBrown
Jan-Piet wrote on 07/03/2012 10:41:20 AM: Building BIND is easy; turning it into an installable RPM not so. I highly recommend fpm [1] which makes building an RPM trivial. :) Any advice or tricks for making a DEB for Ubuntu? So far my plan was to copy the source directory to each server and

Re: RPM [was: Re: bind dies with assertion failure]

2012-07-03 Thread Jan-Piet Mens
Building BIND is easy; turning it into an installable RPM not so. I highly recommend fpm [1] which makes building an RPM trivial. :) Any advice or tricks for making a DEB for Ubuntu? Yes: use fpm. :) So far my plan was to copy the source directory to each server and just run make

Re: RPM [was: Re: bind dies with assertion failure]

2012-07-03 Thread Warren Kumari
On Jul 3, 2012, at 10:58 AM, wbr...@e1b.org wrote: Jan-Piet wrote on 07/03/2012 10:41:20 AM: Building BIND is easy; turning it into an installable RPM not so. I highly recommend fpm [1] which makes building an RPM trivial. :) Any advice or tricks for making a DEB for Ubuntu? So far my

Re: BIND, DNSSEC AD

2012-07-03 Thread John Williams
Thanks to all that replied.  I think the solution I want to pursue is to integrate AD 2012 DNS with BIND.  Talk about bleeding edge huh?? From: Tony Finch d...@dotat.at To: Marc Lampo marc.la...@eurid.eu Cc: John Williams john.1...@yahoo.com;

Re: Several (2) different views [SOLVED]

2012-07-03 Thread Rodrigo Renie Braga
Just giving a feedback, this method worked great, but in my case, didn't have no negate the keys in the ACL (like the example below), I created one key for each ACL in my configuration and used that ACL for the match-clients directive in the view. So, when the slave tried to sync the zone, the

named-checkconf view in error message?

2012-07-03 Thread Jack Tavares
If I run named-checkconf -z to check zones in my config, it will report on success or failure of each zone, but will not specify which view. If a zone name exists in more than one view, it will not indicate in which view the failing zone is in. This seems like this would be good information to

Re: named-checkconf view in error message?

2012-07-03 Thread Evan Hunt
On Tue, Jul 03, 2012 at 10:54:19PM +, Jack Tavares wrote: If I run named-checkconf -z to check zones in my config, it will report on success or failure of each zone, but will not specify which view. If a zone name exists in more than one view, it will not indicate in which view the