Strange BIND 9.4.1-P1 problem
Fr34k
freaknetboy at yahoo.com
Wed Aug 15 16:16:39 UTC 2007
Thanks Mark.
To answer your question, I am NOT using "dnssec-validation yes"
However, I am running 9.4.1 and I want to go to 9.4.1-P1 but someone else reported this issue with P1 (hence, my hesitation about P1).
"core dumped" reported the issue. I wonder if "core dumped" is using dnssec validation (?)
Here is that post again if it helps:
Gentlemen,
I arrived today morning and get noticed that my master DNS was'nt working.
I checked the log files and found this:
Aug 11 18:54:21 ametista kernel: pid 28262 (named), uid 53: exited on signal 6
Aug 11 18:54:21 ametista named[28262]: adb.c:503: INSIST((rdtype ==
((dns_rdatatype_t)dns_rdatatype_a)) || (rdtype ==
((dns_rdatatype_t)dns_rdatatype_aaaa))
) failed
Any ideas about what could this be?
Mark Andrews <Mark_Andrews at isc.org> wrote:
> Are we saying that this issue only affects configurations with:
> dnssec-validation yes;
> ...or am I jumping to the wrong conclusion?
>
> Clarification appreciated.
> Thank you.
I'm trying to pin down the cirumstances that trigger this.
To do this I need to know whether "dnssec-validation yes;"
is set in your named.conf or not.
Mark
> Mark Andrews wrote:
>
> > Mark Andrews skrev, on 14-08-2007 02:28:
> >
> > >> [...]
> > >>
> > >>> Upgrade now.
> > >>> When a fix is is available you will need to upgrade again.
> > >>>
> > >>> I do have a question for you.
> > >>> Does this resolver have DNS validation enabled?
> > >> How does a resolver do DNS validation? The MTA (Postfix latest stable)
> > >> on all the sites I administer does DNS validation for each message it
> > >> receives, and if an address isn't valid it gives an smtp 450 - till the
> > >> sending MTA gives up in the end - or adapts. But how does a resolver do
> > >> DNS validation?
> > >
> > > Named has a resolver built into it. It also has a server built into
> > > it. Let me rephrase the question.
> > >
> > > Does named have DNS validation enabled?
> >
> > This is a new one on me. I've looked through the admin doc and grep
> > -i'ed in the doc arm directory and all I can find is DNSsec validation,
> > which I can understand. Nor does Google turn anything up about any DNS
> > validation that I didn't know already.
> >
> > What's meant by "DNS validation" in this context?
>
> dnssec-validation yes;
>
> --
> Mark Andrews, ISC
> 1 Seymour St., Dundas Valley, NSW 2117, Australia
> PHONE: +61 2 9871 4742 INTERNET: Mark_Andrews at isc.org
>
>
>
>
>
>
--
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742 INTERNET: Mark_Andrews at isc.org
More information about the bind-users
mailing list