RE: Request to provide procedure for bind upgrade

2015-02-16 Thread Novosielski, Ryan
This is a question about the operating system, not BIND. There are a number of ways. You can enable rollbacks in RPM, you can keep snaphots... you're not going to run into incompatible upgrades in BIND during a simple patching. -- *Note: UMDNJ is now Rutgers-Biomedical and Health Sciences*

Re: Digging to the final IP

2014-10-21 Thread Novosielski, Ryan
*Note: UMDNJ is now Rutgers-Biomedical and Health Sciences* || \\UTGERS |-*O*- ||_// Biomedical | Ryan Novosielski - Senior Technologist || \\ and Health | novos...@rutgers.edu- 973/972.0922 (2x0922) || \\ Sciences

Re: Two domains reporting errors

2014-09-28 Thread Novosielski, Ryan
OS X/iOS autocorrect doesn't work well for technology conversations, period. It's always changing words and acronyms to other things more "interesting." I swear it waits till the moment you hit send. -- *Note: UMDNJ is now Rutgers-Biomedical and Health Sciences* || \\UTGERS |--

Re: Can someone please translate entries from query.log file?

2014-07-15 Thread Novosielski, Ryan
Looks like finding who is authoritative foothillfiretraining.org and then doing a reverse lookup on an address. From: Samad Agha [mailto:samad.agha2...@gmail.com] Sent: Tuesday, July 15, 2014 04:33 PM To: DNS BIND ; bind-users@lists.isc.org Subject: Can someone please translate entries from qu

Re: Update from 9.2.1 to 9.8.2 rc1

2013-09-04 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 09/03/2013 10:18 AM, Mark Andrews wrote: > In message , > =?iso-8859-1?B?RuFiaW 8gR29tZXM=?= writes: >>> Hi, >>> >>> We are in a process to upgrade a really old server running an >>> old Linux distro with Bind 9.2.1. The new server will be a Red >>

Re: Reverse Records on a leash?

2013-08-10 Thread Novosielski, Ryan
No -- and it's not BIND, it's the DNS spec. Reverse entries are in the .in-addr.arpa domian, not your domain name. - Original Message - From: Eduardo Bonsi [mailto:beart...@pacbell.net] Sent: Saturday, August 10, 2013 01:26 PM To: bind-users@lists.isc.org Subject: Re: Reverse Records o

Re: RFC requirements for relative CNAME targets?

2013-07-18 Thread Novosielski, Ryan
Are you asking if the target of a CNAME need be an FQDN if $ORIGIN is defined? If so, no, I use short names (no trailing dot) all the time. From: John Miller [mailto:johnm...@brandeis.edu] Sent: Thursday, July 18, 2013 05:49 PM To: Bind Users Mailing List Subject: Re: RFC requirements for relat

Re: Reverse address entries

2013-07-12 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 07/12/2013 11:23 AM, Sam Wilson wrote: > In article > , Steven > Carr wrote: > >> On 2 July 2013 14:42, Sam Wilson wrote: >>> Can anyone here give examples of the types of various software >>> that will not operate without a PTR record? >> >> Th

Re: Reverse address entries

2013-07-03 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 07/03/2013 11:33 PM, Doug Barton wrote: > On 07/03/2013 07:52 PM, Novosielski, Ryan wrote: | On 07/03/2013 > 04:39 AM, Matus UHLAR - fantomas wrote: |> On 02.07.13 08:53, > Daniel McDonald wrote: |>> I've had trouble with

Re: Reverse address entries

2013-07-03 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 07/03/2013 04:39 AM, Matus UHLAR - fantomas wrote: > On 02.07.13 08:53, Daniel McDonald wrote: >> I've had trouble with OSI-Soft PI historian without reverse >> entries. If there is no reverse, then the PI software would >> spend about 30 seconds l

Re: BIND Service Hung

2013-07-03 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 07/03/2013 05:09 AM, Matus UHLAR - fantomas wrote: > On 03.07.13 09:33, Arie Lendra Putra wrote: >> Now the problem is sometimes (not quite often, just seldomly) >> Named on one of this server is just plain not responding, the >> process is still th

Re: Reverse address entries

2013-07-02 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 07/02/2013 12:36 PM, John Horne wrote: > On Tue, 2013-07-02 at 14:42 +0100, Sam Wilson wrote: > >> Can anyone here give examples of the types of various software >> that will not operate without a PTR record? >> > Nope, and our entire reverse zone

Re: Reverse address entries

2013-06-28 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 The short answer is "some software once cared." Does it still now, I'm not sure. But we do it. On 06/28/2013 01:56 PM, Ward, Mike S wrote: > Hello all, is there any reason to setup reverse address entries for > a zone? I have asked some of the admins

Re: This list's prefix

2013-06-05 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 06/05/2013 03:47 PM, Elmar K. Bins wrote: > war...@kumari.net (Warren Kumari) wrote: > >>> And the 100-dollar-question is: How do you remove them on >>> outgoing mails? ;-) >> You don't -- that's part of the churches evangelism / outreach >> effort

Re: any requests

2013-06-03 Thread Novosielski, Ryan
um.mit.edu] Sent: Tuesday, June 04, 2013 01:37 AM To: comp-protocols-dns-b...@isc.org Subject: Re: any requests In article , "Novosielski, Ryan" wrote: > If it were not already in the cache, I would not need to refresh the cache. > Are you absolutely certain? If so, it is possible

Re: any requests

2013-06-03 Thread Novosielski, Ryan
ched entry on a BIND-hosted domain. - Original Message - From: Barry Margolin [mailto:bar...@alum.mit.edu] Sent: Tuesday, June 04, 2013 01:01 AM To: comp-protocols-dns-b...@isc.org Subject: Re: any requests In article , "Novosielski, Ryan" wrote: > Not in my experience -

Re: any requests

2013-06-03 Thread Novosielski, Ryan
Not in my experience -- in fact, I often do an ANY query to refresh the cache. From: Chris Buxton [mailto:cli...@buxtonfamily.us] Sent: Monday, June 03, 2013 08:47 PM To: Leonard Mills Cc: bind-users@lists.isc.org Subject: Re: any requests If you have mail relays acting this way, you'd better

Re: Mailing list "reply-to" setting

2013-05-08 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 05/08/2013 01:28 PM, wbr...@e1b.org wrote: >> From: Steven Carr > >> Any chance someone can correct the settings on this mailing list >> to reply to the list by default instead of the user posting the >> message? > > Why, Are the settings wrong?

Re: architecture question

2013-05-08 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I personally use localdomain. I'm not sure how safe it is, but I use it at home so it probably doesn't matter. On 05/08/2013 01:47 PM, Steven Carr wrote: > You could ask your institution for a subdomain to be reserved from > their domain? > > .lan is

Re: Simple question about zone and CNAME

2013-04-08 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 04/08/2013 10:16 AM, Phil Mayers wrote: > On 08/04/13 14:46, Sam Wilson wrote: >> In article >> , Phil >> Mayers wrote: >> >>> Sam Wilson wrote: >>> [adding an A record for ed.ac.uk.] >>> >>> If your AD realm is also called ed.ac.uk

Re: Simple question about zone and CNAME

2013-04-08 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 04/08/2013 09:47 AM, Sam Wilson wrote: > In article , > Phil Mayers wrote: > >> Sam Wilson wrote: >> >>> [adding an A record for ed.ac.uk.] >>> >> >> If your AD realm is also called ed.ac.uk then adding an A record >> will definitely affect t

Re: Simple question about zone and CNAME

2013-04-06 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 04/06/2013 03:11 AM, Doug Barton wrote: > On 04/05/2013 11:53 PM, Novosielski, Ryan wrote: > > | It is funny you should mention that... my questions about using > views | to create a situation where one single record is different >

Re: Simple question about zone and CNAME

2013-04-05 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 04/05/2013 04:12 PM, Dave Warren wrote: > On 2013-04-05 12:18, Sam Wilson wrote: >> We're currently prevaricating over putting in an A record for >> ed.ac.uk. Whilst my colleagues who manage active directory assure >> me that having an A record ther

Re: Can two views be layered?

2013-04-05 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 04/06/2013 01:05 AM, Joseph S D Yao wrote: > On Fri, Apr 05, 2013 at 04:24:24PM -0400, Novosielski, Ryan wrote: > ... >> One followup question to this: are there any limits to how the >> SOA section is handled in this case? Can

Re: Can two views be layered?

2013-04-05 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 03/15/2013 07:11 PM, Joseph S D Yao wrote: > On Fri, Mar 15, 2013 at 06:56:57PM -0400, Novosielski, Ryan wrote: >> Hi all. Running BIND 9.6 I believe it is. Not important what >> version as if there is a version that can do t

Re: Having trouble setting up BIND 9.9.2-P2 on Win XP PRO SP3, won't start

2013-03-26 Thread Novosielski, Ryan
I have no idea how things work on Windows, but I doubt "directory" is optional. - Original Message - From: Joanne Homier [mailto:joanne.hom...@gmail.com] Sent: Tuesday, March 26, 2013 11:30 PM To: bind-users@lists.isc.org Subject: Having trouble setting up BIND 9.9.2-P2 on Win XP PRO S

Re: Suspecious DNS traffic

2013-03-26 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 It sounds like exactly the reverse of what Niall described in his other e-mail (brackets mine): "The reply to such a query originates from port 53 on the remote server [in this case, your server], and is destined for the port on your server [in this c

Re: Suspecious DNS traffic

2013-03-26 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Niall already answered you the other day (brackets mine): "The reply to such a query [from your server] originates from port 53 on the remote server, and is destined for the port on your server which was used as the source of the query[, which will be

Re: Can two views be layered?

2013-03-15 Thread Novosielski, Ryan
Thanks! Wonderful -- asked and answered. - Original Message - From: Joseph S D Yao [mailto:j...@tux.org] Sent: Friday, March 15, 2013 07:11 PM To: Novosielski, Ryan Cc: 'bind-users@lists.isc.org' Subject: Re: Can two views be layered? On Fri, Mar 15, 2013 at 06:56:

Can two views be layered?

2013-03-15 Thread Novosielski, Ryan
Hi all. Running BIND 9.6 I believe it is. Not important what version as if there is a version that can do this and I'm not running it, I can go there. Is it possible to have a view that is in essence a list of exceptions to the main zone? eg. the example.com domain exists, so does www.example.c

Re: Registrar that supports self-run domains and provides DNSSEC support

2013-02-22 Thread Novosielski, Ryan
Could we knock off the politics please? I view the recent few posts as ignorant nonsense (complete with poor spelling AND Ayn Rand -- a twofer!), but I'm not inclined to take us further off topic by responding to it. From: Shawn Bakhtiar [mailto:shashan...@hotmail.com] Sent: Friday, February 2

Re: Registrar that supports self-run domains and provides DNSSEC support

2013-02-18 Thread Novosielski, Ryan
I personally like NameCheap. Cheap, and good documentation (that you can use even if you go with someone else). - Original Message - From: Robert Moskowitz [mailto:r...@htt-consult.com] Sent: Monday, February 18, 2013 03:32 PM To: bind-users@lists.isc.org Subject: Registrar that suppo

Re: Can we load balance traf[f]ic for CNAME records?

2012-12-14 Thread Novosielski, Ryan
Won't the DNS server randomly report the the defined IP addresses? - Original Message - From: Barry Margolin [mailto:bar...@alum.mit.edu] Sent: Friday, December 14, 2012 10:49 AM To: comp-protocols-dns-b...@isc.org Subject: Re: Can we load balance traf[f]ic for CNAME records? In articl

Re: Find all authoritative domains for a nameserver?

2012-12-03 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 12/03/2012 06:52 PM, Dan Mahoney wrote: >> Hi all, >> >> I don't know if there's an easy, or even moderately easy way to >> do this, but can one somehow figure out/get a list of all domains >> for which the nameserver is set to a given IP/server na

Re: Find all authoritative domains for a nameserver?

2012-12-03 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 12/03/2012 06:45 PM, Chuck Swiger wrote: > Registrars are expected to have both a billing/admin contact and a > technical contact; make sure that people who expect you to make > their domains work put you as the tech contact, and you will at > lea

Find all authoritative domains for a nameserver?

2012-12-03 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi all, I don't know if there's an easy, or even moderately easy way to do this, but can one somehow figure out/get a list of all domains for which the nameserver is set to a given IP/server name? For reasons I won't get into, the people who register

Re: User wanting to use a .local domain to host DNS

2012-11-15 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 11/15/2012 11:36 AM, btb wrote: > On 2012.11.15 10.14, Novosielski, Ryan wrote: >>> Failing to operate a private TLD correctly is causing internal >>> data leaking to the Internet, which could be a security risk >>> b

Re: User wanting to use a .local domain to host DNS

2012-11-15 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 11/15/2012 09:40 AM, Carsten Strotmann wrote: > '.local" is the 4th most queried domain name (after localhost, com > and net), but it should not exist at all in the Internet (or > queries should not reach the root server system). You see "corp", >

Re: User wanting to use a .local domain to host DNS

2012-11-14 Thread Novosielski, Ryan
It is? I always see localhost.localdomain when it's spelled out completely. I've never seen anything .localhost (and then my guess is that if it is, it's not meant to be used except for one host by itself). - Original Message - From: John Miller [mailto:johnm...@brandeis.edu] Sent: We

Re: User wanting to use a .local domain to host DNS

2012-11-14 Thread Novosielski, Ryan
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 11/14/2012 10:09 AM, Tony Finch wrote: > King, Harold Clyde (Hal) wrote: > >> I'm a bit confused by a user request. I think he is trying to >> keep some hosts on the private side of DNS, but he wants to use a >> DNS name like host.sub.local. I do

Re: Disable log message

2012-10-21 Thread Novosielski, Ryan
I think many of us were just curious why someone would even think to disable it. Would be great if you could indulge (maybe something we've not thought of). - Original Message - From: Jack Tavares [mailto:j.tava...@f5.com] Sent: Sunday, October 21, 2012 06:03 PM To: c...@cam.ac.uk ; bi

Re: Disable log message

2012-10-19 Thread Novosielski, Ryan
While I can see maybe not being interested, caring enough to supress it has me curious. - Original Message - From: Alan Clegg [mailto:a...@clegg.com] Sent: Friday, October 19, 2012 06:13 PM To: bind-us...@isc.org Subject: Re: Disable log message On Oct 18, 2012, at 1:13 PM, Chris Th