Re: How can I set the interface used to transfer zones?

2012-07-05 Thread bind
se visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to uns

Re: ISO or virtual appliance

2013-08-21 Thread bind
On Thu, 22 Aug 2013, Manish Rane wrote: Hi Guys, Is there any ISO or virtual appliance available for BIND? Which ease out the deploy and configuration task. Free, or commercial? I know Infoblox has this, though I have no direct experience with that side. http://www.infoblox.com/products

Re: whois expiration limit?

2014-02-19 Thread bind
On Wed, 19 Feb 2014, Lightner, Jeff wrote: Hi, I know this is the BIND list but I???m thinking folks who deal with DNS probably may be able to answer this question about whois. We recently transferred and renewed a domain by 2 years which pushed its expiration to 01/25/2025. The order

Re: TTL is varying across nameservers

2022-09-24 Thread bind
ritative server. Though, I find it interesting, that the TTL of the google dns server *increases* between the queries - are you sure, the order is right? regards, Erich -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development

Bind9.5.1 Multithreading

2009-01-17 Thread Bind
I have worked with bind 9 in single thread,but i want to upgrade my server to solaris 10 and bind 9.5.1-P1(my machine has 4Gig Ram and 2 cpu(900mhz)) Based on practical experience: does enable multithreading for Bind 9.5.1 is good or not? (with considering stability and simple management) Regards

Open Ports in BIND

2009-02-01 Thread Bind
clinets 365/32668? is 365 the number of queries which asked from my server or number of sessions from other clients to me? what is the meaning of tcp clients:3? any guide would be appreciated Regards ___ bind-users mailing list bind-users@lists.isc.org

Open ports in Bind

2009-02-02 Thread Bind
;rndc status" and the output of "netstat -an |grep 53 | wc" point to the same thing (regardless of difference to running time)? Regards ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

"Fragment Flags Invalid"

2009-02-03 Thread Bind
I installed fresh installation of solaris 10 on sparc machine with latest bind v9,this server is behind the hardware Firewall(policy from out to in is udp53&from in to out is any). But my cisco IDS always announces this alarm from my server to other external clients or servers: "Fragm

Difference between netstat & rndc status

2011-07-03 Thread Bind
https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Fwd: Re: Difference between netstat & rndc status

2011-07-04 Thread Bind
-Original Message- From: "Bind" To: "Feng He" Date: Mon, 04 Jul 2011 18:13:19 +0430 Subject: Re: Difference between netstat & rndc status How much does rndc take for calculating its outpot value(recursive clients value)? ie (in which duration it calculat

Fwd: Re: Fwd: Re: Difference between netstat & rndc status

2011-07-04 Thread Bind
-Original Message- From: "Bind" To: "Mark Andrews" Date: Tue, 05 Jul 2011 09:55:03 +0430 Subject: Re: Fwd: Re: Difference between netstat & rndc status Thanks for your best support and answers all the time. Could u explain more about this list. how it bui

nslookup problem

2011-08-10 Thread Bind
uot;! what is the reason? thx ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: All Bind servers crashed

2011-11-16 Thread bind
clusion. Using 9.7.3-P3 from ISC sources, here, too. ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Bind-9.6 and Heavy Cpu Load

2009-09-26 Thread Bind
Hello I have SunFire V880 (2 cpu +4G Ram) and installed bind 9.6.1-P1 on solaris 10. but my cpu load is very high!(above 90% during the pick time) bash-3.00# prstat -a PID USERNAME SIZE RSS STATE PRI NICE TIME CPU PROCESS/NLWP 562 root 2517M 2498M cpu0 00 1503

Bind-9.7.1 multi thread question (FreeBSD)

2010-06-30 Thread Bind
20640K 11880K kqread 1 0:00 0.00% named why does top show these and is it normal operation or i made a mistake? Regards Iman ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

"spare hosts" as personal DNS nameservers for 'mynew.org'

2017-07-11 Thread bind
tp://zq3q.org/pz/#cispa_DNS_Nameserver_NS_records_for_mynew.org> ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: "spare hosts" as personal DNS nameservers for 'mynew.org'

2017-07-11 Thread bind
r the good examples Tony. Nice to learn your "+noall +answer" dig syntax also. -- What is a domain registrar with good support, that can guide me through getting this to work under linux (fedora 24 and bind 9.x)? I can buy a new domain if need be. My current registrar may respond with a d

Re: "spare hosts" as personal DNS nameservers for 'mynew.org'

2017-07-11 Thread bind
for ns1.mynew.org, and ns2.mynew.org in the mynew.org zone for nameservers pup and zap. > Of course, this can only work if your servers have public, reachable > addresses. They are public. --snip THANKS Niall for the help and good words! -- regards, Tom ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: "spare hosts" as personal DNS nameservers for 'mynew.org'

2017-07-11 Thread bind
If you have a specific registrar in mind with good support pls let me know. -- thanks/regards, Tom ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: "spare hosts" as personal DNS nameservers for 'mynew.org'

2017-07-12 Thread bind
QUESTION SECTION: > ;rhsoft.net.IN NS > > ;; ANSWER SECTION: > rhsoft.net. 86400 IN NS ns2.thelounge.net. > rhsoft.net. 86400 IN NS ns1.thelounge.net. --snip On Tue 7/11/17 21:33 +0200 Reindl Harald wrote:

Re: delegation NS records

2017-07-13 Thread bind
that contains the nameserver SOA, and authority NS records in. If this zone with delegation NS records is a subdomain of a TLD, then one adds these delegation NS records by using the registrar's interface to the TLD registry. -- regards, Tom ___ Pleas

Re: delegation NS records

2017-07-13 Thread bind
TLD com zone: example.comIN NS ns.otherdomain.com ns.example.com IN A x.x.x.x (glue record?) otherdomain.comIN NS ns.example.com ns.otherdomain.com IN A x.x.x.x (glue record?) -- thanks, Tom ___ Please visit https://lists.

Re: delegation NS records

2017-07-14 Thread bind
tion NS record belongs is a TLD, one adds the delegation NS record using the registrar's tool that interfaces w/the TLD registry. -- Tom ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind

Re: RFC7344 (was: Funky Key Tag in AWS Route53 (2))

2022-12-30 Thread bind--- via bind-users
t. The more customers who ask for it, the better (I hope). And now that DNSSEC is so much easier to use than in the past, maybe more people will start asking for RFC7344. cheers, raf -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the developme

Re: Bind forgets my changes with nsupdate

2023-10-06 Thread 201907-bind
ble to refresh my > certificates. Not perfect? What issues did you see? Thanks! -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/

use bind 9.8 as caching server and authoritative nameserver

2013-10-28 Thread bind-check
Hi all , I installed a new bind caching server called nameserver.hiddendomain.be by using Ubuntu server 12.04.3 LTS with the included bind version : 9.8.1.dfsg.P1-4 for testing. We are a tiny ISP for some regional customers so we don't use forwarders, we host the caching servers for

RE: socket error on ipv6 link local

2014-04-01 Thread ca35763+bind
I'm getting the same errors with bind-9.10.0b2. Just a guess but I think it's related to using a HE IPv6 Tunnel and the updated root servers. On Tue, 1 Apr 2014, Paul A wrote: Date: Tue, 1 Apr 2014 16:25:43 -0400 From: Paul A To: 'Kevin Darcy' , bind-users@lists.isc.org

dnssec-keymgr: Plans and usage?

2016-06-25 Thread bind-users
Hi, lastly I've discovered the new python tool dnssec-keymgr included in BIND 9.11 alpha release. I'm seeking for simple tools to handle key rollovers unattended. And the lightweight dnssec-keymgr could be the right one. Are there any future plans or milestones out there (expect of

Can we provide recursion for forward zones in response to iterative queries?

2020-04-03 Thread bind-lists
Hi, In summary, my question is whether there is a way to configure a bind caching server to provide recursion in response to iterative queries for records in a forward type zone. The background is that we have: - AD domain controllers that are authoritative for all of 10.in-addr.arpa. in our

Re: Can we provide recursion for forward zones in response to iterative queries?

2020-04-07 Thread bind-lists
ays wrong. > > Do the similar for the top of all other private namespaces you are using. > > Mark > >> On 4 Apr 2020, at 03:06, bind-li...@iano.org wrote: >> >> Hi, >> >> In summary, my question is whether there is a way to configure a bind &g

Re: Can we provide recursion for forward zones in response to iterative queries?

2020-04-07 Thread bind-lists
ton wrote: > > On Apr 3, 2020, at 9:06 AM, bind-li...@iano.org wrote: >> Because the AD domain controllers already own 10.in-addr.arpa, they refuse >> to allow us to configure conditional forwarding for its subdomains. So we >> delegated the subdomains to the inbound

Re: Can we provide recursion for forward zones in response to iterative queries?

2020-04-07 Thread bind-lists
020, at 4:09 PM, Mark Andrews wrote: > > Add delegations if they are missing. This is how DNS is designed to be > managed. > > This should have been done as part of allocating the address space > initially. > -- > Mark Andrews > >> On 8 Apr 2020,

Re: [Non-DoD Source] BIND Masters and slaves

2020-06-15 Thread bind-lists
nt to support > in my effort to end racism, which I do support, and quite heavily so. > > On 6/15/20 8:00 PM, DeCaro, James John (Jim) CIV DISA FE (USA) wrote: >> Or you can call the slave servers 'secondary' servers. > -- > Met vriendelijke groet / Best rega

query-source and listened interfaces

2021-07-08 Thread 201907-bind
, though. Patrick ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information

editing rc.d/named?

2009-01-04 Thread bind user
I restart the server, the default 9.4.2 install in /usr/sbin/named starts instead of the path to 9.6 above?___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: editing rc.d/named?

2009-01-05 Thread bind user
bind user wrote: Hi All: I installed 9.6.0 alongside FreeBSD7's default 9.4.2, and it's working fine when i start it manually, but I'm having trouble getting it to start automatically. I edited etc/rc.d/named Don't do that. :) The rc.d system is designed to be configur

DDNS fails. record allready exists

2010-12-20 Thread magic-bind
the solution? I use BIND version 9.7.2_p3-r1. regards Daniel ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: DDNS fails. record allready exists

2010-12-20 Thread magic-bind
ht my server (in my local network) is shutting down. > On the next day I have the problem that DDNS is no longer working, because > on update I get the error that the DNS record allready exists. What is the > solution? > > I use BIND version 9.7.2_p

Re: DDNS fails. record allready exists

2010-12-22 Thread magic-bind
very night my server (in my local network) is shutting down. > > On > > the next day I have the problem that DDNS is no longer working, because > > on update I get the error that the DNS record allready exists. What is > > the solution? > > > > I use BIND version

Re: DNSSEC submit of DLV vs DNSKEY records?

2011-05-05 Thread dchilton+bind
"missed it by THAT much ...". thx! relocating to bind-users. On Thu, 05 May 2011 14:37 -0500, "/dev/rob0" wrote: > FWIW I think you hit the wrong list. Did you mean bind-users@isc? > On Thu, May 05, 2011 at 12:25:27PM -0700, dchilton+b...@bestmail.us >wrot

proper setup of dnssec-validation to _always_ resolve, and retrieve DATA and status flags ?

2011-05-09 Thread dchilton+bind
Hi. My bind v980-p1 svr is DNSSEC-enabled, and signed zones are publishing as DNSSEC-valid. I've both internal and external views: -- internal is authoritative and provides recursion for LAN clients -- external serves only as an authoritative hidden-primary feeding slaves via AXFR. all

No A Record for NS

2009-03-19 Thread Bind DNS
Hi All, I'm trying to query for A record, like this : # dig @a.gtld-servers.net ns1.ats-com.com +short 203.130.232.235 # dig @203.130.232.235 ns1.ats-com.com +short (No A Record) What is happen if that NS be used for authoritative some domain(s) ? Thanks Fulan -- Bin

Re: No A Record for NS

2009-03-20 Thread Bind DNS
mation for A record (ns1.ats-com.com) get from the NS parent ? Which the problem ? (cache dns or the domain) Thank You. -- Senmi ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Dynamic update response

2009-09-01 Thread bind jack
ot; fields and not including any part of the original update Bind seems to follow the second rule. Is it possible to configure Bind server to copy the ZOCOUNT, PRCOUNT, UPCOUNT and ADCOUNT fields and associated sections in the response packet? RFC 2136: Dynamic Updates in the Domain Name S

Re: Re: Dynamic update response

2009-09-01 Thread bind jack
Hello Mark, Thank you for your response. Best Regards, Arpad Mark Andrews írta: > > In message , bind jack writes: > > Hello, > > > > My question is about the fields in the dynamic update response. > > As RFC 2136 describes there are 2 possible dynamic upd

Re: Need DNS records help for single server (and IP), and multi-domain mail server.

2017-08-23 Thread bind-users
die -- Grant. . . . unix || die ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

bind 9.11.3 - resolving troubles running as a caching server

2019-11-20 Thread Bind Mailinglist
Hello list I'm glad there is such an active list. Hope there is anybody out there who can help me with my little problem. :-) We are running six bind server ( all Ubuntu LTS 18.04 with bind 9.11.3 ), so they are pretty up to date. Three of them have authoritative zones, one is for testing an

Re: bind 9.11.3 - resolving troubles running as a caching server

2019-11-20 Thread Bind Mailinglist
{     //    213.160.41.2;     //    213.160.40.34;     // }; About the answer. Does it matter if I query A or if there is only a CNAME as an answer? My last test shows me following cache entry. This has happend around 20min after restarting bind with my forwarders enabled

Re: bind 9.11.3 - resolving troubles running as a caching server

2019-11-21 Thread Bind Mailinglist
Am 21.11.2019 um 11:47 schrieb Bind Mailinglist: > Hello Ondřej > Interesting case and not so easy to detect. But I was able to get a > few steps further. > As I have always to clear cache for host > tm.inregion.waas.oci.oraclecloud.net I focused monitoring on that. > 1. >

mysterious wedges in bind9

2009-06-02 Thread travis+ml-bind
sted. pgpID9uQwSXYu.pgp Description: PGP signature ___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

test - plz ignore

2010-04-16 Thread list-bind-users
___ bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Debugging Information Lacking?

2019-11-27 Thread isc-bind-users
I have some other issues that I'm trying to work through, but I wanted to ask about a specific issue. I'm trying to see what BIND currently thinks all of the zones are, so I issue the "rndc dumpdb -zones" command. I get the following output: Nov 27 07:36:26

Re: Debugging Information Lacking?

2019-11-27 Thread isc-bind-users
Intelligent Computing Solutions Midwest Internet Exchange The Brothers WISP - Original Message - From: "Lee" To: isc-bind-us...@ics-il.net Cc: bind-users@lists.isc.org Sent: Wednesday, November 27, 2019 8:59:51 AM Subject: Re: Debugging Information Lacking? On 11/27/19, i

Re: Primary/Secondary (Was: Master/Slave)

2025-02-08 Thread bzs+bind-users
ttps://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information. bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/list

Re: Intermittent issues resolving "labor.upload.akamai.com"

2023-02-08 Thread tale via bind-users
On Fri, Feb 3, 2023 at 4:32 AM Greg Choules via bind-users wrote: >> From a quick look in Wireshark at what my own server (9.18.8) is doing, this >> looks like Akamai not responding correctly to a BIND QNAME minimisation >> query. Here's one response, from 95.101.36.1

Is there an incompatibility between 9.16.37/9.18.11 and 9.9 when doing HMAC-MD5 AXFR?

2023-02-21 Thread Patrik.Graser--- via bind-users
Hi all Due to circumstances beyond my control a remote partner needs to use a 9.9.9 version of bind and we are required to use HMAC-MD5 for zone transfers. There is no (big) security concern since the networks are isolated and not exposed to the larger Internet. When the secondary requests an

Bind listener to an IPv6 from AnyIP subnet

2023-03-12 Thread Serg via bind-users
Hello, I am trying to bind named listener to an IPv6 from prefix which is assigned to a system via AnyIP kernel feature - basically, it is done by the following command: sudo ip -6 route add local 2001:db8::/32 dev lo. To be able to use IPv6 from AnyIP prefix the following sysctl must be

Re: Bind listener to an IPv6 from AnyIP subnet

2023-03-12 Thread Serg via bind-users
I have reloaded the configuration as well as restarted the bind9. The simpliest workaround I see - bind IPv6 explicitly to the interface using command "ip address add 2001:db8::1 dev eth0" and then I am able to use 2001:db8::1 for the named. But I would like to take advantage of us

Re: Bind listener to an IPv6 from AnyIP subnet

2023-03-13 Thread Serg via bind-users
[::] - due to usage of firewall I am able to block connections to the 53/udp and 53/tcp which are not coming to specific IP addresses or ranges, I do not need such filtering functionality within bind itself. Anyway, the better option is to allow bind to a so known "non-local" IP

Re: Bind dns amplification attack

2023-03-28 Thread Serg via bind-users
Are you an open recursor? If the answer is no, you should not face any amplifications attacks. If you are an open recursor, the best solution is to restrict which IP addresses are allowed to access your recursor. -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from

BIND | Cname chain resolution using forward ( CNAME&A returned but no use A) (#3995)

2023-04-03 Thread Yang via bind-users
hi bind admin,  when i use bind-9.11 for my interdns?? deviceip is 10.1.1.1,  i config  zone "bd.baidubce.com."   in { type forward ; forward only; forwarders { 10.10.10.10; }; }; 1??when i dig @10.1.1.1 x.bd.bcebos.com.  2??10.10.10.10 return record "CNAME bd.bcebos.com.,

BIND | Cname chain resolution using forward ( CNAME&A returned but no use A) (#3995)

2023-04-04 Thread Yang via bind-users
i am very very sorry , the zone info of first mail -> zone "bd.baidubce.com."  i write wrong; the wright info is  zone "x.bd.bcebos.com." please just see this mail,     when i use bind-9.11 for my interdns deviceip is 10.1.1.1, i config  zone "x.bd.bcebos.com."

Re: DNSSEC regulatory requirements?

2023-04-05 Thread raf via bind-users
had a tax incentive to encourage DNSSEC adoption, but no regulatory requirement. cheers, raf -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/

Re: Delegation NS-records when zones share an authority server

2023-04-12 Thread tale via bind-users
it'll matter when you decide to add DNSSEC to the zone, and it's also good hygiene in the absence of DNSSEC so that any future maintainer can be reminded that there is a subdomain at that name when looking at the parent. -- Visit https://lists.isc.org/mailman/listinfo/bind-users to u

What is the equivalent of this dnsmasq configuration

2023-06-18 Thread public1020 via bind-users
I need to hijack certain domains and not its subdomains, so I use dnsmasq to achieve it: ``` [host-record=example.com](http://host-record=google.com),1.2.3.4 ``` In bind I have to create a zone and copy everything there, is there a simple way for domains I have no authority for?-- Visit https

Problem with recursion for windows bind for Teamviewer

2023-11-19 Thread legacyone via bind-users
I don't know if this will be fixed before EOL for windows bind but here is the problem Teamviewer (and maybe other sites too) when you do the recursion when no answer under 1000ms it tries again which is trigged by client windows (not the one running bind) which also tries again for a a

Re: Problem with recursion for windows bind for Teamviewer

2023-11-20 Thread legacyone via bind-users
I'm by no means an expert in DNS or how it fully works so I can't be of any more help about this problem then I already have. But it seems Teamviewer have rebooted their DNS servers and now windows bind allows the Teamviewer to load faster -- Visit https://lists.isc.org/mailman/lis

Re: Problem with recursion for windows bind for Teamviewer

2023-11-20 Thread legacyone via bind-users
So more tests and the problem has come back but I think I know why thinking internet sharing was the problem I found a way to disable it because it bind shared access for port 53 on 0.0.0.0 so that the problem I think now after testing with it on. For any interested MS has made it really hard

Re: Problem with recursion for windows bind for Teamviewer

2023-11-20 Thread legacyone via bind-users
Now its not working fast again! I don't know now must be Teamviewer DNS delaying replies causing windows bind to fail in some way. -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscrip

Re: Problem with recursion for windows bind for Teamviewer

2023-11-20 Thread legacyone via bind-users
I'm just using bind to do my DNS look ups with no forwarders thats all Teamviewer app uses DNS to find its servers from what I can tell it can take over 4000ms to get a answer. The following seems to help in bind resolver-retry-interval 5000; I think if I can then find a setting in wi

Re: Problem with recursion for windows bind for Teamviewer

2023-11-20 Thread legacyone via bind-users
On starting Teamviewer it can say no connection when bind does the lookup with this delay it cause bind to not reply LAN side sometimes which causes the app to fail yet with a bind on Ubuntu there is no problem. -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from

Re: Problem with recursion for windows bind for Teamviewer

2023-11-20 Thread legacyone via bind-users
This might show the problem even more on two interfaces WAN side and LAN you can see 192.168.53.19 ask for routerpool8 #60 then bind goes out #62 gets a answer # 75 and no reply back to 192.168.53.19 https://ufile.io/v8oob3jg -- Visit https://lists.isc.org/mailman/listinfo/bind-users to

Re: Problem with recursion for windows bind for Teamviewer

2023-11-20 Thread legacyone via bind-users
This is the thing the setup works for many site fast just this Teamviewer and their DNS servers are a problem and bind does reply to 192.168.53.19 all be it 26 seconds later! but Teamviewer trys over and over then it connects yet the for the WAN side took under 4 seconds to get the answer WAN

Re: Problem with recursion for windows bind for Teamviewer

2023-11-20 Thread legacyone via bind-users
and this from dig maybe a routing iusse why it take so long for me? C:\Program Files\ISC BIND 9\bin>dig @213.227.191.1 router14.teamviewer.com +norecurs ; <<>> DiG 9.16.45 <<>> @213.227.191.1 router14.teamviewer.com +norecurs ; (1 server found) ;; global

Re: Problem with recursion for windows bind for Teamviewer

2023-11-20 Thread legacyone via bind-users
So here is a theory if a client asks a query and bind goes out for that query and the reply is delayed but you get the answer then for what ever reason the reply to the client from bind is delayed more! So the quicker the answer the quicker the answer to the client. Why? I have no idea

Queries/day

2023-11-23 Thread MEjaz via bind-users
an/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information. bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

unable-resolve-bank=domain

2023-12-16 Thread MEjaz via bind-users
023 ;; MSG SIZE rcvd: 101 -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information. bind-users mailing list bi

RE: unable-resolve-bank=domain

2023-12-17 Thread MEjaz via bind-users
, December 17, 2023 11:01 AM To: MEjaz Cc: bind-users@lists.isc.org Subject: Re: unable-resolve-bank=domain > On 17. 12. 2023, at 8:20, MEjaz via bind-users > wrote: > > Any hint would be highly appreciated.. Paraphrasing: Logs or it didn’t happen… Always start with logs. The d

RE: unable-resolve-bank=domain

2023-12-17 Thread MEjaz via bind-users
-banking.gslb.sabbnet.com): ignoring nsec because name is past end of range Ejaz -Original Message- From: MEjaz [mailto:me...@cyberia.net.sa] Sent: Sunday, December 17, 2023 11:16 AM To: 'Ondřej Surý' Cc: 'bind-users@lists.isc.org' Subject: RE: unable-resolve-ban

Unable to Query DoH with `tls none` and Plain HTTP

2024-01-01 Thread r1wcp42w--- via bind-users
{ directory "/var/cache/bind"; // If there is a firewall between you and nameservers you want // to talk to, you may need to fix the firewall to allow multiple // ports to talk. See http://psrp.bbqporkmccity.com/vye5rn/iw5hSZ1O // If your ISP pro

Re: Unable to Query DoH with `tls none` and Plain HTTP

2024-01-01 Thread r1wcp42w--- via bind-users
Hello, Thank you very much, I was unaware of the HTTP/2 requirement and was assuming it is a bug. Is there any reason for omitting the HTTP/1.1 upgrade part of the protocol? On 2024/01/01 22:30, Ondřej Surý wrote: Hi, BIND 9 DoH implementation always uses HTTP/2, so you can't talk

Re: Unable to Query DoH with `tls none` and Plain HTTP

2024-01-02 Thread tale via bind-users
On Tue, Jan 2, 2024 at 4:38 AM Jakob Bohm via bind-users wrote: > Having the DoH server as a standalone process talking to DNS/TCP would > be a solid implementation given the constant flow of changes made to > HTTP(S) by the Big 5. Perhaps, but for reference here is the relevant secti

dnssec-key 'unknown algorithm RSASHA512'

2024-01-10 Thread pvs via bind-users
Hello, I'm  using ubuntu 22.04 server on which bind 9.18.8 service is running. I'm trying to generate dnssec-key by using the command  "dnssec-keygen -a RSASHA512 -b 2048 -n zone example.com" After doing this, it is generating both public key and private key.  When I

Re: dnssec-key 'unknown algorithm RSASHA512'

2024-01-11 Thread trgapp16 via bind-users
Hello, Bind version - 9.18.12 -->This is the command I used for generating dnssec-keygen keys - root@dhcpt: /etc/bind# dnssec-keygen -a ECDSAP256SHA256 -n ZONE example.com Kexample.com.+013+43215.key Kexample.com.+013+43215.private root@dhcpt:/etc/bind# cat Kexample.com.+013+43215.priv

DiG DoH TLS Error

2024-01-16 Thread r1wcp42w--- via bind-users
y return code: 0 (ok) Extended master secret: no Max Early Data: 0 --- read R BLOCK Any idea what is causing the TLS error? -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions.

How to use different views on DNS-over-HTTPS vs normal DNS on port 53

2024-02-12 Thread r1wcp42w--- via bind-users
Hello, How can I configure BIND9 to reply to requests from DNS-over-HTTPS with view A, and if the requests is from normal DNS on port 53, reply with view B? Example: client 192.168.1.5 requests A record test.example.com with DNS over HTTPS, BIND should reply with view A client 192.168.1.5

error: 'allow-update' is not allowed in 'slave' zone

2024-02-14 Thread trgapp16 via bind-users
Hello, I configured Bind 9.18.12 as slave DDNS with dynamic updates from DHCP (ISC DHCP 4.4) running on the same server (Ubuntu 22.04 server) When I run "named-checkconf named.conf", I get the following error "named.conf:2018: option 'allow-update' is no

Re: Observation: BIND 9.18 qname-minimization strict vs dig +trace

2024-04-24 Thread tale via bind-users
nd couldn't get address for 'ns102.click-network.com': not found -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for

[help]how to configure ecs subnet for bind-9.18-21

2024-04-28 Thread Yang via bind-users
dear admin:   now, i use bind-9.18-21, i want to use ecs client subnet function; but i don't know how to configure it, and i don't get method from google   please give me some example,or document , or google links to learn about it ;   thanks! Yang 395096...@qq.com-- V

To the last windows Bind

2024-05-27 Thread legacyone via bind-users
Eagle-Eye Cherry - Save Tonight (youtube.com) <https://www.youtube.com/watch?v=Nntd2fgMUYw> -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.i

Re: qname minimization: me too :(

2024-06-25 Thread tale via bind-users
ambiguous, and in this case it means successfully got an answer for the question that was originally being pursued. In this context, a negative answer is still a successful resolution, unlike timeout or servfail from auths or various other failures. -- tale -- Visit https://lists.isc.org/mailman

Re: Advice on balancing web traffic using geoip ACls

2020-02-23 Thread @lbutlr via bind-users
On 23 Feb 2020, at 07:57, @lbutlr wrote: > (9.11.6 should be coming really soon) 9.11.16, and I appear to be behind a touch, it is already released. ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this l

delv 9.16.0, failed to add trusted key '.': ran out of space

2020-02-28 Thread Shaun via bind-users
ning a bug I want to make sure I didn't goof something on my end. Thanks, Shaun ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users

Re: delv 9.16.0, failed to add trusted key '.': ran out of space

2020-02-28 Thread Shaun via bind-users
On Fri, 28 Feb 2020 20:07:47 + Tony Finch wrote: > Shaun via bind-users wrote: > > > > The 9.16.0 version of delv seems to have trouble reading the root trust > > anchor from the bind.keys file. > > I see this too. The bug is that dns_client_addtrustedkey()

Re: Compile errors for Bind 9.16.1 on RHEL7.x and RHEL 6.X

2020-03-24 Thread Shaun via bind-users
:44:20 + "Bhangui, Sandeep - BLS CTR via bind-users" wrote: > Hello > > Trying to compile Bind 9.16.1 on RHEL 7.X and RHEL 6.X and getting compile > errors hopefully someone can point me in the right direction. > > The download for the source code from the ISC

"lame-servers: info: no valid RRSIG resolving ..."

2020-04-17 Thread btb via bind-users
/DS/IN': 192.5.6.30#53 15-Apr-2020 18:14:54.009 lame-servers: info: no valid RRSIG resolving 'facebook.com/DS/IN': 192.5.6.30#53 15-Apr-2020 18:16:20.039 lame-servers: info: no valid RRSIG resolving 'pphosted.com/DS/IN': 192.5.6.30#53 a number of these [most?] are zone

Re: "lame-servers: info: no valid RRSIG resolving ..."

2020-04-17 Thread btb via bind-users
thanks- we're running 9.14.8, courtesy of the isc ubuntu ppa [https://launchpad.net/~isc]: >named -v BIND 9.14.8-Ubuntu (Stable Release) >dpkg -s bind9 Package: bind9 Status: install ok installed Priority: optional Section: net Installed-Size: 872 Maintainer: Debian DNS Team A

Nsupdate and TTL

2020-04-22 Thread @lbutlr via bind-users
L. -- "I know she's in there," said Verence, holding his crown in his hands in the famous Ai-Se-or-Mexican-Bandits-Have-Raided-Our-Village position ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to

unknown option 'trust-anchors'

2020-07-05 Thread @lbutlr via bind-users
visp.net named[53940] reloading configuration failed: failure Bind is currently running just fine and has been since 8 June. The bind.keys file has: # See https://data.iana.org/root-anchors/root-anchors.xml for current trust # anchor information for the root zone. But that URL does not load an

Re: Debian/Ubuntu: Why was the service renamed from bind9 to named?

2020-07-20 Thread tale via bind-users
but for a little bit around the edges. And for what it's worth, not all systems moved away from "named" to "bind9". I've been running FreeBSD for decades, and I can't remember ever calling the service "bind9". ___

  1   2   3   4   5   6   7   8   9   10   >