10-09-2008
Ooooh, that blows.
I agree you can solve this using BIND9. There is a simple one for such cases, but it's been years. But first, why can't you reverse the order so that the "local" nameserver is searched first?
9 More Discussions You Might Find Interesting
1. Cybersecurity
Hi again guys,
It seems this is a global thing affecting all the DNS bind versions prior to July 28 2008. I have my work cut out for me very soon, I see at least a handful of servers in my list that either need to patching or upgrading.
How many of you guys are affected? Anybody successfully... (4 Replies)
Discussion started by: sparcguy
4 Replies
2. IP Networking
so we had bind 9.3.0...
we upgraded to 9.5.0 patch 1
we kept the exact same named.conf
now we have a problem that some DMZ server cant do lookups from our DNS slave anymore.
in the named.log we see things like this:
22-Jul-2008 16:05:04.694 security: info: client <our DMZ servers... (2 Replies)
Discussion started by: robsonde
2 Replies
3. Cybersecurity
Hi,
from my workplace we use a proxy to connect to the outside world, including external ssh servers.
The problem is that the server is seeing the connection coming from the proxy and knows nothing about the client behind it. The ssh connection itself works fine, but x-forwarding does not work as... (1 Reply)
Discussion started by: vampirodolce
1 Replies
4. UNIX and Linux Applications
Hello guys, can anyone help me with the below error I'm getting from bind9? I'm trying to make bind read all the zone info from openldap, I have already created the schema and I've put some info into the ldap. I have also tried to google the error with no success.
I'm aware there is an problem... (1 Reply)
Discussion started by: yered
1 Replies
5. UNIX for Advanced & Expert Users
Hi there,
I have the following problem.
I have a Debian server with bind9.
I can also use my ISP DNS server through the internet box (192.168.1.1).
I would like to fool my client workstation to a local machine when they query for one specific hostname within a domain.
I want to let the... (5 Replies)
Discussion started by: kokonut95
5 Replies
6. Solaris
I have configured a Bind9 DNS on a X4270 machine with Solaris10
I am excuting some repformance tests with DNSPERF tool and maximun CPU usage is 23%. I have seen with
prstat -L -p PID
that named process usses only 2 of the 8 available CPU at the same time although threads for all CPUs exist.... (2 Replies)
Discussion started by: parisph
2 Replies
7. UNIX for Dummies Questions & Answers
how can i set default permission for nslookup,
i have in my nslookup
timeout = 0 retry = 3 port = 53
but i want to set it to :
timeout = 2 retry = 2 port = 53
i'm using bind9 , where can i set the default timeout for it?
thanks in advance (0 Replies)
Discussion started by: prpkrk
0 Replies
8. UNIX for Dummies Questions & Answers
We're moving an app from a server in our domain to a server hosted by the vendor in their domain.
This app had it's own domain setup that we're authoritative for.
Do I need to create a new zone file? zone-vendor_com and set up the CNAME records in this file? Or if I can just edit the one I... (1 Reply)
Discussion started by: joeaverage
1 Replies
9. IP Networking
Hi all,
I've a litte problem to get rollerd running and signing my zones if the ZSK of my zones are near expiring or expired.
rollerd is running but do nothing
startet with:
/usr/bin/perl /usr/sbin/rollerd -rrfile /etc/bind/all.rollrec -directory /etc/bind -logfile /dev/stdout
... (1 Reply)
Discussion started by: xabbu
1 Replies
LEARN ABOUT DEBIAN
ldns-walk
ldns-walk(1) General Commands Manual ldns-walk(1)
NAME
ldns-walk - Retrieve the contents of a DNSSEC signed zone
SYNOPSIS
ldns-walk [ OPTION ] ZONE
DESCRIPTION
ldns-walk is used to retrieve the contents of a DNSSEC signed zone. It does this through NSEC-walking (following the chain of NSEC
records) and 'guessing' the next non-existent owner name for each NSEC.
Note that it might get stuck on some wildcard records when used through a caching forwarder. This problem can be circumvented by querying
the authoritative nameserver directly (with the @ argument).
Of course the nameserver that is used must be DNSSEC-aware.
OPTIONS
-f Do a 'full' zone walk; by default, ldns-walk will only show the names, and types present at those names. If this option is given,
all resource records will be printed.
-s name
Start the walk with this owner name. Useful when continuing the walk for a large zone.
@ nameserver
Send the queries to this nameserver.
BUGS
The full zone walk function is not complete yet, it does not correctly print delegation records
AUTHOR
Written by Jelte Jansen as an example for ldns usage.
REPORTING BUGS
Report bugs to <ldns-team@nlnetlabs.nl>.
COPYRIGHT
Copyright (C) 2005 NLnet Labs. This is free software. There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PUR-
POSE.
21 Nov 2005 ldns-walk(1)