Still having nsupdate troubles..

Anthony Ryan Mattke tonhe at ims1.imagestream-is.com
Wed Dec 6 18:59:52 UTC 2000



When I do an nsupdate on the local machine it works just fine.
THe machine reports having authority for the domain.. (btw, i'm using
tsig keys) But when I do it from another linux boxen, it dosent report
authority for the domain. This second box is a slave for the domain. Which
brings up my seoncd question, how can i force a slave to do an update from
the master ?

Here is the output from the nsupdate on the second box.. 

atoi:/# nsupdate -d -k /etc/named/tsig:tsig-key. 
> update add test.iphere.com. 333 a 192.168.0.99
> 
;; res_findzonecut: START dname='test.iphere.com.' class=IN, zsize=1025,
naddrs=3
;; res_findzonecut: get the soa, and see if it has enough glue
;; res_nmkquery(QUERY, test.iphere.com., IN, SOA)
;; res_send()
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 29247
;; flags: rd; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 0
;; QUERY SECTION:
;;      test.iphere.com, type = SOA, class = IN

;; Querying server (# 1) address = 192.168.0.1
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 29247
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0
;; QUERY SECTION:
;;      test.iphere.com, type = SOA, class = IN

;; AUTHORITY SECTION:
iphere.com.             3m20s IN SOA    hal.bravegnuworld.com.
tonhe.imagestream-is.com. (
                                        10              ; serial
                                        1M              ; refresh
                                        3m20s           ; retry
                                        5M              ; expiry
                                        3m20s )         ; minimum


;; res_findzonecut: get the ns rrset and see if it has enough glue
;; res_nmkquery(QUERY, iphere.com, IN, NS)
;; res_send()
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 29248
;; flags: rd; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 0
;; QUERY SECTION:
;;      iphere.com, type = NS, class = IN

;; Querying server (# 1) address = 192.168.0.1
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 29248
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 2
;; QUERY SECTION:
;;      iphere.com, type = NS, class = IN

;; ANSWER SECTION:
iphere.com.             5M IN NS        hal.bravegnuworld.com.
iphere.com.             5M IN NS        ims1.imagestream-is.com.

;; ADDITIONAL SECTION:
hal.bravegnuworld.com.  1d23h57m41s IN A  63.86.29.164
ims1.imagestream-is.com.  1d23h57m41s IN A  205.159.243.5

;; res_findzonecut: get the missing glue and see if it's finally enough
;; res_findzonecut: add_addrs: 1
;; res_findzonecut: add_addrs: 1
;; res_findzonecut: satisfy(hal.bravegnuworld.com): 2
;; res_findzonecut: FINISH n=2 (OK)
;; res_nupdate: res_mkupdate -> 49
;; res_send()
;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 29249
;; flags:; ZONE: 1, PREREQUISITE: 0, UPDATE: 1, ADDITIONAL: 1
;;      iphere.com, type = SOA, class = IN
test.iphere.com.        5m33s IN A      192.168.0.99
tsig-key.               0S ANY TSIG     HMAC-MD5.SIG-ALG.REG.INT. 0
;; Querying server (# 1) address = 63.86.29.164
;; got answer:
;; ->>HEADER<<- opcode: UPDATE, status: NOTAUTH, id: 29249
;; flags: qr ra; ZONE: 1, PREREQUISITE: 0, UPDATE: 0, ADDITIONAL: 1
;;      iphere.com, type = SOA, class = IN
tsig-key.               0S ANY TSIG     HMAC-MD5.SIG-ALG.REG.INT. 18
;; res_nupdate: res_nsend: send error, n=-1 (Inappropriate ioctl for
device)



Any help would be appreciated, thanks

 __
~/ony


#include".sig"

Anthony Ryan Mattke
- Imagestream Internet Solutions
- http://www.imagestream-is.com/
- tony at imagestream-is.com
- 1.800.813.5123





More information about the bind-users mailing list