Hey,

Recently I discovered that the nameservers of two out the three IPA masters (replicas) are
not responding with up-to-date information.

Our setup has three masters. Each is configured as nameserver. Most of the time I use one as the main master when I modify DNS entries. We also have a DHCP server that
sends updates to that "main" master.

What I now discovered is that updates are not available when clients use the two
other masters.

On all three masters the DNS record is present when I use local ldapsearch [1]. But with dig
the record is only present on one master.

If I restart the nameserver it then has all records available.

What would be the best method to find out what is wrong?

BTW. There are two things that changed recently. I mention this in case it rings a bell. 1. one master was re-installed with CentOS 8 Stream. An other CentOS8 master was added
a few weeks ago.
2. our nameservers don't have connection to the Internet any more. So, root servers cannot
be found.

[1] by local ldapsearch I mean doing a command like this:
    ldapsearch -H ldapi://%2fvar%2frun%2f...
--
Kees
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org
Do not reply to spam on the list, report it: 
https://pagure.io/fedora-infrastructure

Reply via email to