Re: Enterprise DNS Architecture - AD and BIND

2016-11-08 Thread Ray Van Dolson
Hiya. On Wed, Nov 09, 2016 at 01:11:16AM +, Baird, Josh wrote: > Hi Ray, > > I'm not quite sure why you would have your caching servers forward to > other DNS servers (Google, OpenDNS, etc). I would enable recursion > on them and would not forward anything. I would also consider > making t

RE: Enterprise DNS Architecture - AD and BIND

2016-11-08 Thread Baird, Josh
Hi Ray, I'm not quite sure why you would have your caching servers forward to other DNS servers (Google, OpenDNS, etc). I would enable recursion on them and would not forward anything. I would also consider making these caching servers at each location slave your *internal* authoritative zon

Question on prod.msocdn.com

2016-11-08 Thread Jim Glassford
Greetings, Query the list, any verification or pointers appreciated. We are having dns issues for prod.msocdn.com starting on Monday 11/7/2016 and I just thought it was DNSSEC issue on their end but not so sure anymore. Doing dig +cd on prod.msocnd.com will get the CNAME, without +cd either ti

Enterprise DNS Architecture - AD and BIND

2016-11-08 Thread Ray Van Dolson
Greetings; Am reviewing our DNS setup which has organically evolved over the years and most certainly is due for an update: - We have AD servers responsible for our primary domain (internally). - We have other sets of AD servers responsible for other domains in DMZ's and such. - We have a BIN

RE: UDP client handler shuts down, and BIND stops responding

2016-11-08 Thread Corby Bennett
Thanks. How do I follow-up on the status of my ticket? -Corby -Original Message- From: Mark Andrews [mailto:ma...@isc.org] Sent: Tuesday, November 01, 2016 1:01 PM To: Corby Bennett Cc: bind-users@lists.isc.org Subject: Re: UDP client handler shuts down, and BIND stops responding