Handling expired domains

2018-06-28 Thread rohan.henry cwjamaica.com
Hello All, If all zones on a slave server expire because the slave could not reach the master shouldn't the slave start working again once the master becomes reachable without having to tweak anything like the serial? Thanks. Regards, Rohan ___

Re: d root server

2013-08-20 Thread rohan.henry
Lyle, Version 9.8.4-P1 is also affected. And the hints file was downloaded during setup. Also note that even a freshly downloaded copy has the old address. Note IP 199.7.91.13 in the following dig output. dig +tcp @a.root-servers.net . ns ; <<>> DiG 9.8.4-P1 <<>> +tcp @a.root-servers.net . ns

Re: d root server

2013-08-20 Thread rohan.henry
Edward, Agreed. My concern though is why the following show up in my logs when the IP is already in the root hint file. checkhints: d.root-servers.net/A (199.7.91.13) missing from hints Regards, Rohan On Tue, 20 Aug 2013 14:40:09 -0400 Edward DeLargy wrote: >Rohan, > Normally you s

Re: d root server

2013-08-20 Thread rohan.henry
Thanks Edward, I didn't think I needed to edit the downloaded root hint file. In fact the d.root-server.net server is assigned the IP address in the dig output below. I do not know where 128.8.10.90 comes from. dig d.root-servers.net ; <<>> DiG 9.7.2-P3 <<>> d.root-servers.net ;; global optio

d root server

2013-08-20 Thread rohan.henry
Hello, Why do I still get the following in my logs even after downloading the latest version root hint file. checkhints: d.root-servers.net/A (128.8.10.90) extra record in hints checkhints: d.root-servers.net/A (199.7.91.13) missing from hints Regards, Rohan ___

Re: DDOS attack Bind 9.9 - P2

2013-05-03 Thread rohan.henry
Understood. I already have ACLs defined. So I can use "rate-limit{exempt-clients{address-match-list}}; " statement to exclude my client addresses from the RRL checks. Thanks. Rohan On Fri, 3 May 2013 20:13:47 GMT Vernon Schryver wrote: >> From: > >> >What if both authoritative and recursive

Re: DDOS attack Bind 9.9 - P2

2013-05-03 Thread rohan.henry
Found the answer to below. According to isc-tn-2012-1.txt hybrid authority/recursive servers are out of scope. On Fri, 03 May 2013 13:44:01 -0500 wrote: >What if both authoritative and recursive are running on the same server since >RRL does not apply to recursive servers? > >Rohan > >On Fri

Re: DDOS attack Bind 9.9 - P2

2013-05-03 Thread rohan.henry
What if both authoritative and recursive are running on the same server since RRL does not apply to recursive servers? Rohan On Fri, 3 May 2013 18:19:27 GMT Vernon Schryver wrote: >> From: > >> So based on the response below how critical is it to implement >> RRL via Bind RRL patch provided t

Re: DDOS attack Bind 9.9 - P2

2013-05-03 Thread rohan.henry
So based on the response below how critical is it to implement RRL via Bind RRL patch provided the servers resources are available? And where do I download this patch? Rohan On Thu, 2 May 2013 22:16:51 GMT Vernon Schryver wrote: >> From: "Lawrence K. Chen, P.Eng." > >> So does rate limiting

ISC Courses

2013-04-26 Thread rohan.henry
Hello, Can anyone say why Bind course offering appears so expensive? Is something else included in the package that is not specified? 2-Day Introduction to DNS & BIND Training Price: $1,795.00 Rohan ___ Please visit https://lists.isc.org/mailman/listi

Re: named crashed

2012-12-11 Thread rohan.henry
Linh, This resembles a bug. You might want to upgrade to the latest patch release. Rohan On Mon, 10 Dec 2012 12:30:48 -0500 "Khuu, Linh Contractor" wrote: >Hello, > >Our named just crashed this morning. I looked into the log, and saw the >following errors in the log. What is dst_api.c? Why d