Re: New error about zone files: record with inherited owner ... immediately after $ORIGIN

2015-06-05 Thread Evan Hunt
> Finally: "named -v" reports "BIND 9.9.4-RedHat-9.9.4-18.el7_1.1 > (Extended Support Version)" and named itself does support our zone > files. It is only "named-checkconf -z" that is balking. This fix was included in BIND 9.9.7: 4014. [bug] When including a master file origin_change

New error about zone files: record with inherited owner ... immediately after $ORIGIN

2015-06-05 Thread Andrew Gideon
We've just tried configuring a CentOS7 environment as a DNS server for the first time, and have hit an error not seen previously. This occurred using zone files that have been in use for quite a while. Specifically, this appears to be hitting a particular idiom that we use a lot. I cannot imagine

Re: GSS-TSIG updates with multiple KSPs on the same BIND server?

2015-06-05 Thread Doug Barton
On 6/4/15 5:14 PM, John Marshall wrote: On Thu, 04 Jun 2015, 23:04 +, Vinícius Ferrão wrote: I always make my own krb5.conf file. Which krb bits on DNS you're talking about? $ORIGIN example.com. _kerberos TXT "EXAMPLE.REALM" _kerberos._udpSRV 0 0 88 kdc1

Re: delay between nsupdate and NOTIFY

2015-06-05 Thread Cathy Almond
On 05/06/2015 07:39, Charles Musser wrote: >> >> Adjust serial-query-rate. This also controls the notify rate in BIND 9.9. >> A seperate control "notify-rate" is coming in BIND 9.11. >> > Today we tried increasing serial-query-rate from our original value of 1000 > up to 5000 for a while, and the

how to record all queries

2015-06-05 Thread houguanghua
Dear all, After 'rndc stats' is run, I found that the number of "IPv4 requests received" is far more than the request number in queries log file. Those clients not in the trusted ACL are not written into queries log file. Can anyone tell me how to record all queries? Best regards