Re: With the announcement that: “Advisory — D-root is changing its IPv4 address on the 3rd of January.”

2012-12-14 Thread Warren Kumari
On Dec 14, 2012, at 12:19 PM, Chris Buxton wrote: > > On Dec 14, 2012, at 6:59 AM, Hayward, Bruce wrote: > >> Hi >> >> With the announcement that: “Advisory — D-root is changing its IPv4 address >> on the 3rd of January.” >> >> https://lists.dns-oarc.net/pipermail/dns-operations/2012-Dece

Re: Can we load balance traf[f]ic for CNAME records?

2012-12-14 Thread WBrown
Manis Rane wrote on 12/14/2012 02:12:59 PM: > That is true by default rrset-order is cyclic I believe. And even if > it replies randomly I guess we will have to NAT the traffic on > firewall for particular IPs Your original post made me believe you are running Windows CAS servers. Why not use

Re: Can we load balance traf[f]ic for CNAME records?

2012-12-14 Thread Manish Rane
That is true by default rrset-order is cyclic I believe. And even if it replies randomly I guess we will have to NAT the traffic on firewall for particular IPs -- Thanks and Regards, Manish R On Fri, Dec 14, 2012 at 10:15 PM

Re: With the announcement that: “Advisory — D-root is changing its IPv4 address on the 3rd of January.”

2012-12-14 Thread Chris Buxton
On Dec 14, 2012, at 6:59 AM, Hayward, Bruce wrote: > Hi > > With the announcement that: “Advisory — D-root is changing its IPv4 address > on the 3rd of January.” > > https://lists.dns-oarc.net/pipermail/dns-operations/2012-December/009428.html > > We are running 9.7.3-P3 on the Auths, and

Re: Requesting tips on setting TTLs so that expired RRSIG data doesn't stay in the zone

2012-12-14 Thread Chris Buxton
On Dec 14, 2012, at 2:48 AM, GS Bryan wrote: > Reference: http://dnssec-debugger.verisignlabs.com/imouto.my > > How to configure named (version BIND 9.9.2-P1-RedHat-9.9.2-2.P1.el5) > so that expired RRSIG data doesn't stay in the zone? I heard it has > omething to do with the TTL of the zone (the

Re: Can we load balance traf[f]ic for CNAME records?

2012-12-14 Thread Barry Margolin
In article , "Novosielski, Ryan" wrote: > Won't the DNS server randomly report the the defined IP addresses? RFC 6186 is about using SRV records, not round-robin DNS. > - Original Message - > From: Barry Margolin [mailto:bar...@alum.mit.edu] > Sent: Friday, December 14, 2012 10:49 AM T

Re: Can we load balance traf[f]ic for CNAME records?

2012-12-14 Thread Novosielski, Ryan
Won't the DNS server randomly report the the defined IP addresses? - Original Message - From: Barry Margolin [mailto:bar...@alum.mit.edu] Sent: Friday, December 14, 2012 10:49 AM To: comp-protocols-dns-b...@isc.org Subject: Re: Can we load balance traf[f]ic for CNAME records? In articl

Re: Can we load balance traf[f]ic for CNAME records?

2012-12-14 Thread Barry Margolin
In article , SM wrote: > See RFC 6186. Verify whether the mail clients support that specification. Are there any mail clients that support this yet? -- Barry Margolin Arlington, MA ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users

With the announcement that: “Advisory — D-root is changing its IPv4 address on the 3rd of January.”

2012-12-14 Thread Hayward, Bruce
Hi With the announcement that: “Advisory — D-root is changing its IPv4 address on the 3rd of January.” https://lists.dns-oarc.net/pipermail/dns-operations/2012-December/009428.html We are running 9.7.3-P3 on the Auths, and 9.8.1-P1 on the resolvers. We currently do not use a root hints file

RE: How can I migrate my Domain from ISP hosted to my own BIND server?

2012-12-14 Thread Lightner, Jeff
To expand on that. The steps Manish wrote are what you do internally. What Sten is writing is external – your domains are “registered” somewhere and the “Registrar” points to the appropriate DNS servers – you’ll need to insure that it is pointing to your internal DNS servers. You can find out

Re: Requesting tips on setting TTLs so that expired RRSIG data doesn't stay in the zone

2012-12-14 Thread GS Bryan
zone "imouto.my" { type master; file "zones/imouto.my/imouto.my.conf"; allow-transfer { imoutomy; }; notify yes; also-notify { }; max-journal-size 50k; key-directory "";

Re: How can I migrate my Domain from ISP hosted to my own BIND server?

2012-12-14 Thread Sten Carlsen
You can find an external DNS provider (I use one that is free) and have them slave your zones. Just make your TTLs suitable, so even if your own server dies, the zones will be served from the provider for weeks. Changes will propagate fast. On 14/12/12 11:40, Mark Andrews wrote: > In message >

Re: Requesting tips on setting TTLs so that expired RRSIG data doesn't stay in the zone

2012-12-14 Thread Phil Mayers
On 12/14/2012 10:48 AM, GS Bryan wrote: Reference: http://dnssec-debugger.verisignlabs.com/imouto.my How to configure named (version BIND 9.9.2-P1-RedHat-9.9.2-2.P1.el5) so that expired RRSIG data doesn't stay in the zone? I heard it has omething to do with the TTL of the zone (the expiry timer

Requesting tips on setting TTLs so that expired RRSIG data doesn't stay in the zone

2012-12-14 Thread GS Bryan
Reference: http://dnssec-debugger.verisignlabs.com/imouto.my How to configure named (version BIND 9.9.2-P1-RedHat-9.9.2-2.P1.el5) so that expired RRSIG data doesn't stay in the zone? I heard it has omething to do with the TTL of the zone (the expiry timer in that zone's SOA). The named.conf has th

Re: How can I migrate my Domain from ISP hosted to my own BIND server?

2012-12-14 Thread Mark Andrews
In message , Manish Rane writes: > Hi Team, > > I need to migrate my domain which is hosted at my ISP on to my own > internal BIND server and have my own NS record. Does anyone steps I > need to take care of or complete procedure? 1. take a copy of the zone and make your server a master for it.

Re: How can I migrate my Domain from ISP hosted to my own BIND server?

2012-12-14 Thread Giles Coochey
On 14/12/2012 09:55, Manish Rane wrote: Hi Team, I need to migrate my domain which is hosted at my ISP on to my own internal BIND server and have my own NS record. Does anyone steps I need to take care of or complete procedure? You need to consider some things: Do you have the infrastructure

Re: How can I migrate my Domain from ISP hosted to my own BIND server?

2012-12-14 Thread Feng He
于 2012-12-14 17:55, Manish Rane 写道: I need to migrate my domain which is hosted at my ISP on to my own internal BIND server and have my own NS record. Does anyone steps I need to take care of or complete procedure? you'd better pick up a book to read for the begin :) ___

How can I migrate my Domain from ISP hosted to my own BIND server?

2012-12-14 Thread Manish Rane
Hi Team, I need to migrate my domain which is hosted at my ISP on to my own internal BIND server and have my own NS record. Does anyone steps I need to take care of or complete procedure? -- -- Thanks and Regards, Manish R _

Re: Can we load balance traf[f]ic for CNAME records?

2012-12-14 Thread SM
At 01:14 14-12-2012, Manish Rane wrote: I understand that Mail Delivery load balance can be achieved by usingMX priorities. My concern is not that, rather I am more worries about users who will be using A record to configure their mail clients like IMAP or POP. I am thinking on load balancing t

Re: Can we load balance traf[f]ic for CNAME records?

2012-12-14 Thread Manish Rane
Perfect this is what I was talking about, now My IMAP and SMTP are on same server and confusion starts from there since MX records will eventaully should have A record as well so in that case I will be having 2 A records pointing to same IPs correct. Woudl that casue any issue, theortically it sho

Re: Can we load balance traf[f]ic for CNAME records?

2012-12-14 Thread Feng He
于 2012-12-14 17:14, Manish Rane 写道: I understand that Mail Delivery load balance can be achieved by usingMX priorities. My concern is not that, rather I am more worries about users who will be using A record to configure their mail clients like IMAP or POP. I am thinking on load balancing their s

Re: Can we load balance traf[f]ic for CNAME records?

2012-12-14 Thread Manish Rane
Ok - let me rephrase the question. I guess Charles got it right. I understand that Mail Delivery load balance can be achieved by usingMX priorities. My concern is not that, rather I am more worries about users who will be using A record to configure their mail clients like IMAP or POP. I am thinki

Re: Caching name server - Choosing the root-servers

2012-12-14 Thread Stephane Bortzmeyer
On Fri, Dec 14, 2012 at 09:00:31AM +, Can Şirin wrote a message of 114 lines which said: > I mean, choosing the faster ones (root-servers) is gonna be better > for speed performans. Yes, but BIND does it (testing the fastest) and probably better than you. > Is there any way to configure

Caching name server - Choosing the root-servers

2012-12-14 Thread Can Şirin
Hello, I would like to set up a caching only name server but besides that I want also to edit named.root by this means limit the root hints. I mean, choosing the faster ones (root-servers) is gonna be better for speed performans. I had a study on it and I realise that even if you edit the root

Re: Can we load balance trafgic for CNAME records?

2012-12-14 Thread Feng He
于 2012-12-14 13:27, Manish Rane 写道: Like say i need to play with mail services and I have 2 ISPs.say ISP A and ISP B. MX 10 mail.example.com 20.20.20.20 (from isp A) Mx 20 mail01.example.com 30.30.30.30 (from isp B) CNAME cas.example.com <