Bind9.5.1 Multithreading

2009-01-17 Thread Bind
I have worked with bind 9 in single thread,but i want to upgrade my server to solaris 10 and bind 9.5.1-P1(my machine has 4Gig Ram and 2 cpu(900mhz)) Based on practical experience: does enable multithreading for Bind 9.5.1 is good or not? (with considering stability and simple management) Regards

Fragment Flags Invalid

2009-02-03 Thread Bind
I installed fresh installation of solaris 10 on sparc machine with latest bind v9,this server is behind the hardware Firewall(policy from out to in is udp53from in to out is any). But my cisco IDS always announces this alarm from my server to other external clients or servers: Fragment Flags

Bind-9.6 and Heavy Cpu Load

2009-09-26 Thread Bind
Hello I have SunFire V880 (2 cpu +4G Ram) and installed bind 9.6.1-P1 on solaris 10. but my cpu load is very high!(above 90% during the pick time) bash-3.00# prstat -a PID USERNAME SIZE RSS STATE PRI NICE TIME CPU PROCESS/NLWP 562 root 2517M 2498M cpu0 00 1503

Bind-9.7.1 multi thread question (FreeBSD)

2010-06-30 Thread Bind
% named why does top show these and is it normal operation or i made a mistake? Regards Iman ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Difference between netstat rndc status

2011-07-03 Thread Bind
https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Fwd: Re: Fwd: Re: Difference between netstat rndc status

2011-07-04 Thread Bind
-Original Message- From: Bind b...@dci.ir To: Mark Andrews ma...@isc.org Date: Tue, 05 Jul 2011 09:55:03 +0430 Subject: Re: Fwd: Re: Difference between netstat rndc status Thanks for your best support and answers all the time. Could u explain more about this list. how it built

nslookup problem

2011-08-10 Thread Bind
is the reason? thx ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: All Bind servers crashed

2011-11-16 Thread bind
. Using 9.7.3-P3 from ISC sources, here, too. ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: How can I set the interface used to transfer zones?

2012-07-05 Thread bind
://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from

Re: ISO or virtual appliance

2013-08-21 Thread bind
On Thu, 22 Aug 2013, Manish Rane wrote: Hi Guys, Is there any ISO or virtual appliance available for BIND? Which ease out the deploy and configuration task. Free, or commercial? I know Infoblox has this, though I have no direct experience with that side. http://www.infoblox.com/products

Re: whois expiration limit?

2014-02-19 Thread bind
On Wed, 19 Feb 2014, Lightner, Jeff wrote: Hi, I know this is the BIND list but I???m thinking folks who deal with DNS probably may be able to answer this question about whois. We recently transferred and renewed a domain by 2 years which pushed its expiration to 01/25/2025. The order

Re: delegation NS records

2017-07-13 Thread bind
contains the nameserver SOA, and authority NS records in. If this zone with delegation NS records is a subdomain of a TLD, then one adds these delegation NS records by using the registrar's interface to the TLD registry. -- regards, Tom ___ Please visit https:/

Re: delegation NS records

2017-07-13 Thread bind
e: example.comIN NS ns.otherdomain.com ns.example.com IN A x.x.x.x (glue record?) otherdomain.comIN NS ns.example.com ns.otherdomain.com IN A x.x.x.x (glue record?) -- thanks, Tom ___ Please visit https://lists.isc.org/mailman

Re: delegation NS records

2017-07-14 Thread bind
egation NS record belongs is a TLD, one adds the delegation NS record using the registrar's tool that interfaces w/the TLD registry. -- Tom ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-user

"spare hosts" as personal DNS nameservers for 'mynew.org'

2017-07-11 Thread bind
org> ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: "spare hosts" as personal DNS nameservers for 'mynew.org'

2017-07-11 Thread bind
or the good examples Tony. Nice to learn your "+noall +answer" dig syntax also. -- What is a domain registrar with good support, that can guide me through getting this to work under linux (fedora 24 and bind 9.x)? I can buy a new domain if need be. My current registrar may respond wi

Re: "spare hosts" as personal DNS nameservers for 'mynew.org'

2017-07-11 Thread bind
public, reachable > addresses. They are public. --snip THANKS Niall for the help and good words! -- regards, Tom ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: "spare hosts" as personal DNS nameservers for 'mynew.org'

2017-07-11 Thread bind
th good support pls let me know. -- thanks/regards, Tom ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: "spare hosts" as personal DNS nameservers for 'mynew.org'

2017-07-12 Thread bind
: > rhsoft.net. 86400 IN NS ns2.thelounge.net. > rhsoft.net. 86400 IN NS ns1.thelounge.net. --snip On Tue 7/11/17 21:33 +0200 Reindl Harald wrote: --snip > > What is a domain registrar with good support, that can guide me through > &

Re: TTL is varying across nameservers

2022-09-25 Thread bind
ive server. Though, I find it interesting, that the TTL of the google dns server *increases* between the queries - are you sure, the order is right? regards, Erich -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of t

Re: RFC7344 (was: Funky Key Tag in AWS Route53 (2))

2022-12-30 Thread bind--- via bind-users
tomers who ask for it, the better (I hope). And now that DNSSEC is so much easier to use than in the past, maybe more people will start asking for RFC7344. cheers, raf -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this soft

Re: editing rc.d/named?

2009-01-05 Thread bind user
bind user wrote: Hi All: I installed 9.6.0 alongside FreeBSD7's default 9.4.2, and it's working fine when i start it manually, but I'm having trouble getting it to start automatically. I edited etc/rc.d/named Don't do that. :) The rc.d system is designed to be configured with rc.conf. You

No A Record for NS

2009-03-19 Thread Bind DNS
Hi All, I'm trying to query for A record, like this : # dig @a.gtld-servers.net ns1.ats-com.com +short 203.130.232.235 # dig @203.130.232.235 ns1.ats-com.com +short (No A Record) What is happen if that NS be used for authoritative some domain(s) ? Thanks Fulan -- Bind DNS sen

Re: No A Record for NS

2009-03-20 Thread Bind DNS
) ;; WHEN: Fri Mar 20 15:22:36 2009 ;; MSG SIZE rcvd: 115 Is it possible if the information for A record (ns1.ats-com.com) get from the NS parent ? Which the problem ? (cache dns or the domain) Thank You. -- Senmi sen...@telkom.net.id ___ bind

Re: Re: Dynamic update response

2009-09-01 Thread bind jack
Hello Mark, Thank you for your response. Best Regards, Arpad Mark Andrews ma...@isc.org írta: In message freemail.20090801231709.18...@fm10.freemail.hu, bind jack writes: Hello, My question is about the fields in the dynamic update response. As RFC 2136 describes there are 2

DDNS fails. record allready exists

2010-12-20 Thread magic-bind
is the solution? I use BIND version 9.7.2_p3-r1. regards Daniel ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

proper setup of dnssec-validation to _always_ resolve, and retrieve DATA and status flags ?

2011-05-09 Thread dchilton+bind
Hi. My bind v980-p1 svr is DNSSEC-enabled, and signed zones are publishing as DNSSEC-valid. I've both internal and external views: -- internal is authoritative and provides recursion for LAN clients -- external serves only as an authoritative hidden-primary feeding slaves via AXFR. all good

RE: socket error on ipv6 link local

2014-04-01 Thread ca35763+bind
I'm getting the same errors with bind-9.10.0b2. Just a guess but I think it's related to using a HE IPv6 Tunnel and the updated root servers. On Tue, 1 Apr 2014, Paul A wrote: Date: Tue, 1 Apr 2014 16:25:43 -0400 From: Paul A ra...@meganet.net To: 'Kevin Darcy' k...@chrysler.com, bind-users

dnssec-keymgr: Plans and usage?

2016-06-25 Thread bind-users
Hi, lastly I've discovered the new python tool dnssec-keymgr included in BIND 9.11 alpha release. I'm seeking for simple tools to handle key rollovers unattended. And the lightweight dnssec-keymgr could be the right one. Are there any future plans or milestones out there (expect of 'remaining

Re: Need DNS records help for single server (and IP), and multi-domain mail server.

2017-08-23 Thread bind-users
-- Grant. . . . unix || die ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: bind 9.11.3 - resolving troubles running as a caching server

2019-11-21 Thread Bind Mailinglist
Am 21.11.2019 um 11:47 schrieb Bind Mailinglist: > Hello Ondřej > Interesting case and not so easy to detect. But I was able to get a > few steps further. > As I have always to clear cache for host > tm.inregion.waas.oci.oraclecloud.net I focused monitoring on that. > 1. >

bind 9.11.3 - resolving troubles running as a caching server

2019-11-20 Thread Bind Mailinglist
Hello list I'm glad there is such an active list. Hope there is anybody out there who can help me with my little problem. :-) We are running six bind server ( all Ubuntu LTS 18.04 with bind 9.11.3 ), so they are pretty up to date. Three of them have authoritative zones, one is for testing and two

Re: bind 9.11.3 - resolving troubles running as a caching server

2019-11-20 Thread Bind Mailinglist
{     //    213.160.41.2;     //    213.160.40.34;     // }; About the answer. Does it matter if I query A or if there is only a CNAME as an answer? My last test shows me following cache entry. This has happend around 20min after restarting bind with my forwarders enabled

Re: Can we provide recursion for forward zones in response to iterative queries?

2020-04-07 Thread bind-lists
ays wrong. > > Do the similar for the top of all other private namespaces you are using. > > Mark > >> On 4 Apr 2020, at 03:06, bind-li...@iano.org wrote: >> >> Hi, >> >> In summary, my question is whether there is a way to configure a bind &g

Re: Can we provide recursion for forward zones in response to iterative queries?

2020-04-07 Thread bind-lists
020, at 4:09 PM, Mark Andrews wrote: > > Add delegations if they are missing. This is how DNS is designed to be > managed. > > This should have been done as part of allocating the address space > initially. > -- > Mark Andrews > >> On 8 Apr 2020,

Re: Can we provide recursion for forward zones in response to iterative queries?

2020-04-07 Thread bind-lists
ton wrote: > > On Apr 3, 2020, at 9:06 AM, bind-li...@iano.org wrote: >> Because the AD domain controllers already own 10.in-addr.arpa, they refuse >> to allow us to configure conditional forwarding for its subdomains. So we >> delegated the subdomains to the

Can we provide recursion for forward zones in response to iterative queries?

2020-04-03 Thread bind-lists
Hi, In summary, my question is whether there is a way to configure a bind caching server to provide recursion in response to iterative queries for records in a forward type zone. The background is that we have: - AD domain controllers that are authoritative for all of 10.in-addr.arpa. in our

Re: [Non-DoD Source] BIND Masters and slaves

2020-06-15 Thread bind-lists
in my effort to end racism, which I do support, and quite heavily so. > > On 6/15/20 8:00 PM, DeCaro, James John (Jim) CIV DISA FE (USA) wrote: >> Or you can call the slave servers 'secondary' servers. > -- > Met vriendelijke groet / Best regards, > Michael De Roover _

query-source and listened interfaces

2021-07-08 Thread 201907-bind
, though. Patrick ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information

Re: Bind forgets my changes with nsupdate

2023-10-06 Thread 201907-bind
o refresh my > certificates. Not perfect? What issues did you see? Thanks! -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for m

mysterious wedges in bind9

2009-06-02 Thread travis+ml-bind
Description: PGP signature ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

test - plz ignore

2010-04-16 Thread list-bind-users
___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

correct syntax for TSIG IP restrictions for named-ACL versus just IP?

2010-12-05 Thread pgngw+dev001+bind-users
i've bind9 running as a primaryhost to a number of bind-andb-other slaves. i'm trying to set up to use different TSIG keys with different secondaries. in my named.conf, i've ... acl acl_slave_1 { 1.1.1.1; }; acl acl_slave_2 { 2.2.2.2; 3.3.3.3; 4.4.4.4; 5.5.5.5

Re: correct syntax for TSIG IP restrictions for named-ACL versus just IP?

2010-12-05 Thread pgngw+dev001+bind-users
to have the IPs mentioned here? the goal is to have both IP- key- restrictions in place. fwiw, the orig example i found for this was @: https://lists.isc.org/pipermail/bind-users/2009-April/075985.html thanks! ___ bind-users mailing list bind-users

Re: correct syntax for TSIG IP restrictions for named-ACL versus just IP?

2010-12-05 Thread pgngw+dev001+bind-users
to initiate any transfers, as if it's not getting any notify. still poking around ... I wrote an explanation of BIND ACLs on this list a few years back that you may find helpful in explaining the syntactic insanity: http://www.mail-archive.com/bind-users@lists.isc.org/msg00045.html yes

DNSSEC rolloever fails

2016-12-27 Thread bobjunk via bind-users
1 2017. The replacement keys published as expected and haven't been used for signing yet as expected. I woke up last Friday Dec 23rd to find my zones failing validation. When I investigated I found the existing signatures expired on the 22nd and bind never resigned the records

Re: delegation NS records

2017-07-14 Thread Jacob via bind-users
-evans ] [ https://github.com/jakedevans ] [ https://keybase.io/jacobdevans ] - Original Message - From: "Niall O'Reilly" <niall.orei...@ucd.ie> To: "bind-users" <bind-users@lists.isc.org> Sent: Friday, July 14, 2017 2:40:49 PM Subject: Re: delegation NS reco

Re: Problem w/ Forwarding Zone in Caching-Only Config

2017-06-27 Thread btb via bind-users
On 6/27/17 12:13 PM, Michael W. Fleming wrote: We're setting up a wireless printing service that uses Zeroconf/bonjour/rendevouz dns entries. The product, Presto, has it's own dns server for a private, on-campus only zone (presto.). We're running bind 9.9 with a master server, three slaves

Re: head scratcher: nsupdate, Bind views, and TLSA record updates

2017-11-01 Thread Kevin via bind-users
I think it's sorted, thanks all. -Kevin From: "Tony Finch" <d...@dotat.at> To: bind-us...@isc.org Sent: Wednesday, November 1, 2017 2:50:32 AM Subject: Re: head scratcher: nsupdate, Bind views, and TLSA record updates Mark Andrews <ma...@isc.org> wrote

head scratcher: nsupdate, Bind views, and TLSA record updates

2017-10-31 Thread Kevin via bind-users
I'm running into an odd issue with Bind 9.9.4 whereby I'm trying to run a scripted nsupdate to rotate TLSA records. I'm running nsupdate via a Bash script that executes the following nsupdate batch commands which are directed to a Bind "view" that is accessible from the wider internet

Re: head scratcher: nsupdate, Bind views, and TLSA record updates

2017-10-31 Thread Kevin via bind-users
- Original Message - > From: "Kevin" <bind-users...@thesandiegos.com> > To: "Warren Kumari" <war...@kumari.net> > Cc: "Kevin" <bind-users...@thesandiegos.com>, "bind-users" > <bind-users@lists.isc.org> > Sent

Re: head scratcher: nsupdate, Bind views, and TLSA record updates

2017-10-31 Thread Kevin via bind-users
From: "Warren Kumari" <war...@kumari.net> To: "Kevin" <bind-users...@thesandiegos.com> Cc: "bind-users" <bind-users@lists.isc.org> Sent: Tuesday, October 31, 2017 11:28:58 AM Subject: Re: head scratcher: nsupdate, Bind views, and TLSA record upda

Re: head scratcher: nsupdate, Bind views, and TLSA record updates

2017-10-31 Thread Kevin via bind-users
- Original Message - > From: "Kevin" <bind-users...@thesandiegos.com> > To: "Kevin" <bind-users...@thesandiegos.com> > Cc: "Warren Kumari" <war...@kumari.net>, "bind-users" > <bind-users@lists.isc.org> > Sent

Re: head scratcher: nsupdate, Bind views, and TLSA record updates

2017-10-31 Thread Kevin via bind-users
- Original Message - > From: "Warren Kumari" <war...@kumari.net> > To: "Kevin" <bind-users...@thesandiegos.com> > Cc: "bind-users" <bind-users@lists.isc.org> > Sent: Tuesday, October 31, 2017 12:47:06 PM > Subject: Re: head

Re: BIND question

2018-04-11 Thread praveen via bind-users
: fatal: failed loading zone from : CNAME and other data On Wednesday, April 11, 2018, 5:56:01 PM EDT, Carl Byington <c...@byington.org> wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On Wed, 2018-04-11 at 21:06 +, praveen via bind-users wrote: > Is an "A" rec

BIND question

2018-04-11 Thread praveen via bind-users
All, Operating BIND version "BIND 9.9.10-P1 (Extended Support Version)" DNSSEC signing in place. DKIM, SPF and DMARC records are also in place for top-level domain (zone). Is an "A" record mandatory entry for top-level domain (zone) when using DNSSEC, DKIM, SPF and DMARC c

RPZ for A and AAAA queries

2018-03-29 Thread Job via bind-users
way to split? I tried looking at local-data but i was not able to perform this. Thank you, F ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.

Identification Solution

2018-11-06 Thread Fick1995 via bind-users
Have anyone check where to get an important identification of your documents. now this is a solution if you lost 1 check it out. Where Fake ID <http://www.bogusbraxtor.com> is more Real - Bogus-Braxtor -- Sent from: http://bind-users-forum.2342410.n4.nabb

zone forward to pseudo domain(*.local) does not work

2018-10-10 Thread lejeczek via bind-users
from boxA with +dnssec and as expected these are secure(d). boxA does allow-transfer boxB What is the problem, what I got wrong there? many thanks, L. ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-use

domain's own a record(s)

2018-09-21 Thread lejeczek via bind-users
visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: how to dynamically change/update (own private) domain record

2018-09-22 Thread lejeczek via bind-users
On 22/09/18 17:04, Reindl Harald wrote: Am 22.09.18 um 17:53 schrieb lejeczek via bind-users: is it possible to update domain(not hosts of/in the domain) records? there is nothing like "not hosts of/in the domain" Something like domain.local A 10.1.1.100 which is simply a

how to dynamically change/update (own private) domain record

2018-09-22 Thread lejeczek via bind-users
/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

bind-9-packages: RPS and both '--enable-static' and '--disable-static'?

2018-09-25 Thread James via bind-users
Thank you for the https://www.isc.org/blogs/bind-9-packages/ blog post and various binary distributions mentioned in it. I am an end user, not a programmer, and I rely on Linux distributions and application packages and so having up-to-date content from authoritative sources is both helpful

Re: how to dynamically change/update (own private) domain record

2018-09-23 Thread lejeczek via bind-users
10.3.1.100#12046/key nsupdate_key: updating zone 'dom.local/IN': attempt to add CNAME alongside non-CNAME ignored ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users

Freeze/thaw and signed zone files

2019-02-21 Thread @lbutlr via bind-users
, I tried to move the .signed file aside, thinking maybe thaw might recreate it, But no, it complains the file doesn’t exist, so I put it back. Is it possible for me to edit the zone file (as in with vim) and have bind update, or do I have to do everything through nsupdate and never access

Re: Freeze/thaw and signed zone files

2019-02-21 Thread @lbutlr via bind-users
> On 21 Feb 2019, at 13:41, Grant Taylor via bind-users > wrote: > > On 02/21/2019 01:34 PM, @lbutlr via bind-users wrote: >> I edited a zone file after issuing a rndc freeze command, added two new sub >> zones, changed the serial number, saved the file, and then

Re: Freeze/thaw and signed zone files

2019-02-22 Thread @lbutlr via bind-users
On 21 Feb 2019, at 20:43, Grant Taylor via bind-users wrote: > > On 2/21/19 6:28 PM, @lbutlr wrote: >> rndc reload did not recreate (or at least update the time stamp) on the >> .signed file. > > Hum. Maybe it's something different about how you're doing DNSSEC tha

Re: Freeze/thaw and signed zone files

2019-02-22 Thread @lbutlr via bind-users
hose is my example.com.signed file? Is nsdiff a separate package? It’s not on my FereeBSD 11.2 system with Bind 9.12 -- Well boys, we got three engines out, we got more holes in us than a horse trader's mule, the radio is gone and we're leaking fuel and if we was flying any lower why we'd need

Re: Freeze/thaw and signed zone files

2019-02-21 Thread @lbutlr via bind-users
nd Ladies ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: SERVFAIL when looking up TXT from particular domain

2019-06-27 Thread Dennis via bind-users
Hi Mark, >Given the message says "ran out of space” it indicates that a fixed buffer was >too small.  The lookup also works with current versions of BIND so I would >say the solution is to stop running EoL’d software and upgrade. I have upgraded to 9.14.3 and that has so

static stub zone not working as expected

2019-07-11 Thread btb via bind-users
elates here in some capacity, as there is no public .local domain, obviously? disabling dnssec [dnssec-enable no;] seems to support this, as when doing so, queries work. that said, i'm wondering why this is happening - e.g. why bind seems to be consulting public dns for this zone, if i'

Re: DNSSEC validation via DLV

2019-07-18 Thread Mal via bind-users
xists that does not provide a fully signed path >> from root to zone, i.e. .com.au , co.za etc, how would an >> administrator enable / implement DNSSEC validation for these zones ? >> >> >> ___ >> Please visit https://

Re: DNSSEC validation via DLV

2019-07-18 Thread Mal via bind-users
or the ".com.au" zone. ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: bind-users Digest, Vol 3297, Issue 1

2019-11-06 Thread krookkids via bind-users
Dear Wil, Your email was fascinating. Thank you Sent with ProtonMail Secure Email. ‐‐‐ Original Message ‐‐‐ On Wednesday, November 6, 2019 3:15 AM, wrote: > Send bind-users mailing list submissions to > bind-users@lists.isc.org > > To subscribe or unsubscribe via the Wo

named unable to set effective uid to 0 Operation not permitted

2019-10-19 Thread EscuelitaViva via bind-users
Bind 9.7.1 - 9.14.5 - 9.14.7 and 9.15.3 is dropping this into sys.log, but still runs fine: named[459]: unable to set effective uid to 0: Operation not permitted named[459]: generating session key for dynamic DNS named[459]: unable to set effective uid to 0: Operation not permitted named[459

Debugging Information Lacking?

2019-11-27 Thread isc-bind-users
I have some other issues that I'm trying to work through, but I wanted to ask about a specific issue. I'm trying to see what BIND currently thinks all of the zones are, so I issue the "rndc dumpdb -zones" command. I get the following output: Nov 27 07:36:26 DNA-DNS1 n

Re: Debugging Information Lacking?

2019-11-27 Thread isc-bind-users
Intelligent Computing Solutions Midwest Internet Exchange The Brothers WISP - Original Message - From: "Lee" To: isc-bind-us...@ics-il.net Cc: bind-users@lists.isc.org Sent: Wednesday, November 27, 2019 8:59:51 AM Subject: Re: Debugging Information Lacking? On 11/27/19, i

Re: Advice on balancing web traffic using geoip ACls

2020-02-23 Thread @lbutlr via bind-users
On 23 Feb 2020, at 07:57, @lbutlr wrote: > (9.11.6 should be coming really soon) 9.11.16, and I appear to be behind a touch, it is already released. ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this l

Re: delv 9.16.0, failed to add trusted key '.': ran out of space

2020-02-28 Thread Shaun via bind-users
On Fri, 28 Feb 2020 20:07:47 + Tony Finch wrote: > Shaun via bind-users wrote: > > > > The 9.16.0 version of delv seems to have trouble reading the root trust > > anchor from the bind.keys file. > > I see this too. The bug is that dns_client_addtrustedkey()

delv 9.16.0, failed to add trusted key '.': ran out of space

2020-02-28 Thread Shaun via bind-users
sure I didn't goof something on my end. Thanks, Shaun ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: Why does dig +trace ignore Additional Records?

2020-01-27 Thread Ttttabcd via bind-users
mentation! ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Why does dig +trace ignore Additional Records?

2020-01-10 Thread Ttttabcd via bind-users
that a standard DNS resolver should have. ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

"lame-servers: info: no valid RRSIG resolving ..."

2020-04-17 Thread btb via bind-users
some don't even exist, so i'm curious about seeing these messages. what am i not understanding, and/or what can i do to troubleshoot further? thanks! ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list

Re: "lame-servers: info: no valid RRSIG resolving ..."

2020-04-17 Thread btb via bind-users
thanks- we're running 9.14.8, courtesy of the isc ubuntu ppa [https://launchpad.net/~isc]: >named -v BIND 9.14.8-Ubuntu (Stable Release) >dpkg -s bind9 Package: bind9 Status: install ok installed Priority: optional Section: net Installed-Size: 872 Maintainer: Debian DNS Team Archit

Re: Compile errors for Bind 9.16.1 on RHEL7.x and RHEL 6.X

2020-03-24 Thread Shaun via bind-users
:44:20 + "Bhangui, Sandeep - BLS CTR via bind-users" wrote: > Hello > > Trying to compile Bind 9.16.1 on RHEL 7.X and RHEL 6.X and getting compile > errors hopefully someone can point me in the right direction. > > The download for the source code from the ISC

Nsupdate and TTL

2020-04-22 Thread @lbutlr via bind-users
L. -- "I know she's in there," said Verence, holding his crown in his hands in the famous Ai-Se-or-Mexican-Bandits-Have-Raided-Our-Village position ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsub

Re: [DNSfirewalls] Response Policy Zone: disabling "leaking" of lookups

2020-09-03 Thread pvm_job via bind-users
ps!) >Let's stop the leaks. >-- >Fred Morris >  >___ >DNSfirewalls mailing list >dnsfirewa...@lists.redbarn.org >http://lists.redbarn.org/mailman/listinfo/dnsfirewalls >         ___

Re: Do not cache certain domains

2020-09-10 Thread tale via bind-users
esolver sees will be the one that got clamped in the view resolver, but I'm not positive about that. You will also get double the number of cache entries for each lookup, of course. ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsub

Re: forwarders used in order or based on RTT ?

2020-10-16 Thread tale via bind-users
On Fri, Oct 16, 2020 at 10:22 AM Matus UHLAR - fantomas wrote: >> On 16.10.20 09:56, Bob Harold wrote: > >The BIND ARM (9.16.2) says: > >"There may be one or more forwarders, and they are queried in turn until > >the list is exhausted or an answer is found." &

Re: Reverse lookup response format

2020-08-25 Thread tale via bind-users
interpreted as relative to the current origin. ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc

Re: Error "Query section mismatch : got"

2020-08-19 Thread tale via bind-users
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information. bind-users mailing list bind-users@lists.isc.org https://li

Re: /etc/bind.keys in a chrooted environment

2020-07-22 Thread tale via bind-users
inside the chroot. NAMED_CONF_INCLUDE_FILES mentioned in the OP seems to be a SuSE-ism and I didn't dig into whatever bearing it might have for maintenance of the chroot. -- tale ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsub

Re: Debian/Ubuntu: Why was the service renamed from bind9 to named?

2020-07-20 Thread tale via bind-users
same but for a little bit around the edges. And for what it's worth, not all systems moved away from "named" to "bind9". I've been running FreeBSD for decades, and I can't remember ever calling the service "bind9". ___ Please vis

unknown option 'trust-anchors'

2020-07-05 Thread @lbutlr via bind-users
] reloading configuration failed: failure Bind is currently running just fine and has been since 8 June. The bind.keys file has: # See https://data.iana.org/root-anchors/root-anchors.xml for current trust # anchor information for the root zone. But that URL does not load and gives an XML error

Re: Weird DNS behaviour resolution issues when more labels are present in a zone

2020-12-16 Thread tale via bind-users
On Wed, Dec 16, 2020 at 3:48 AM Prasanna Mathivanan (pmathiva) via bind-users wrote: > Whenever we have broken delegation as domain owners didn't follow proper RFC, > the default behaviour of the query hits " _." which > doesn’t exist.? And we get NXDOMAIN or SERVFAIL re

Re: SRV Record Server Availability

2021-01-05 Thread tale via bind-users
On Tue, Jan 5, 2021 at 4:30 AM Wilfred Sarmiento via bind-users wrote: > Is DNS Bind SRV record can detect the Server's availability? If yes, how? Could you provide more information about your goal? I don't fully understand the question. For my reading, the answer is basica

Re: Getting "query failed (REFUSED) for ./IN/ANY"

2021-01-13 Thread tale via bind-users
, but I'd say the answer is a qualified yes. If you are not providing open recursive services and are not authoritative for the root domain, BIND will respond with REFUSED just like it would if someone asked you about example.com when you're not authoritative for that. In the old days you'd get a root re

Re: Updating a DNSSEC config to use a different algorithm

2021-02-01 Thread Mal via bind-users
On 02/02/2021 12:10 am, @lbutlr wrote: > I've been using alg-7 for DNS, but that is no longer recommended. How > difficult is it to change the signing algorithm and what is the process (Bind > 9.16.11)? I migrated recently from Alg8 to Alg13, no drama..  My registry does not ha

Re: My FC33->FC34 bind-chroot upgrade notes

2021-06-16 Thread ToddAndMargo via bind-users
On 6/15/21 11:54 PM, G.W. Haywood via bind-users wrote: Hi there, On Wed, 16 Jun 2021, ToddAndMargo wrote: Re: My FC33->FC34 bind-chroot upgrade notes I hope this is the last time I have to revise this! ... Unfortunately perhaps not. :'( ... # means root $ means user ... Someti

Re: 'managed-keys' is deprecated ??

2021-06-15 Thread ToddAndMargo via bind-users
On 15-06-2021 07:46, ToddAndMargo via bind-users wrote: On 6/14/21 9:30 PM, Jim Popovitch via bind-users wrote: On Tue, 2021-06-15 at 14:27 +1000, Mark Andrews wrote: https://downloads.isc.org/isc/bind9/9.16.16/doc/arm/Bv9ARM.pdf The modern-day RTFM  :-) -Jim P. "Just G

  1   2   3   4   5   6   7   8   9   10   >