Re: query cache denied in vew statement

2010-09-27 Thread Kevin Darcy
Hopefully you understand that when you turn recursion off, that means you can only answer from zones that you actually *host* (i.e. for which you are "master" or "slave"). But you have no "master" or "slave" zones defined in the "mynetwork" view. Therefore it is not possible for that view to d

Re: query cache denied in vew statement

2010-09-27 Thread Phil Mayers
On 27/09/10 09:45, David S. wrote: Hi Pil, "In that case, don't you want "recursion on" in view "mynetwork"?" I won't recursion in my network, so recursion is no. Sorry, I don't understand. Perhaps someone else can help you. ___ bind-users mailing li

Re: query cache denied in vew statement

2010-09-27 Thread David S.
Hi Pil, "In that case, don't you want "recursion on" in view "mynetwork"? " I won't recursion in my network, so recursion is no. - -- Best regards, David http://blog.pnyet.web.id On 09/27/2010 03:32 PM, Phil Mayers wrote: > In that case, don't you want "recursion on" in view "mynetwork"? _

Re: query cache denied in vew statement

2010-09-27 Thread Phil Mayers
On 09/27/2010 09:25 AM, David S. wrote: I want to build name server for ISP: Please don't email me directly; replying to the list is the correct thing to do. view "mynetwork" allow "trusted" to lookup domain / host in internet. In that case, don't you want "recursion on" in view "mynetwo

Re: query cache denied in vew statement

2010-09-27 Thread Phil Mayers
On 09/26/2010 10:57 PM, David S. wrote: I've removed "additional-from-cache" and restart bind, below part of named.conf Ok, bad guess on my part :o( Not sure I'm afraid. I don't really understand your config; do you mean to have recursion off in both views? What is sending the queries? They

Re: query cache denied in vew statement

2010-09-26 Thread Barry Margolin
In article , "David S." wrote: > I've removed "additional-from-cache" and restart bind, below part of > named.conf You still haven't added 'allow-query-cache { "trusted};};'. > > options { > directory "/var/named"; > allow-transfer { "xfer"; }; > pid-file "named.pid";

Re: query cache denied in vew statement

2010-09-26 Thread David S.
I've removed "additional-from-cache" and restart bind, below part of named.conf options { directory "/var/named"; allow-transfer { "xfer"; }; pid-file "named.pid"; listen-on port 53 { any; }; statistics-file "named.stats"; memstatistics-file "named.m

Re: query cache denied in vew statement

2010-09-26 Thread Phil Mayers
On 09/26/2010 09:25 PM, David S. wrote: Dear All, I had problem when trying to use "view" class on my named.conf, please see attached file and below my query log: You've set "additional-from-cache" but not "allow-query-cache" ACL. The default has everyone denied. Do you need to set "additio

query cache denied in vew statement

2010-09-26 Thread David S.
Dear All, I had problem when trying to use "view" class on my named.conf, please see attached file and below my query log: # tail -f /var/log/named/query.log 27-Sep-2010 02:54:49.738 security: info: client 127.0.0.1#48295: view mynetwork: query (cache) 'yahoo.com/A/IN' denied 27-Sep-2010 02:59