DNS BInd on Linux

Kevin Darcy kcd at daimlerchrysler.com
Sat Dec 9 03:38:26 UTC 2000


Please review master-file syntax:

1) Any name which is not dot-terminated will have the $ORIGIN appended to=
 it
(which is why, for instance,"localhost" is being interpreted as
"localhost.0.168.192.in-addr.arpa").

2) NS records take names, not IP addresses (which is why, in conjunction =
with
the above problem, the "slums" NS record "192.168.0.1" is being interpret=
ed as
"192.168.0.1.slums").

Also, you said you installed BIND 8.0, but actually the logs indicate tha=
t it
is BIND 8.2.2-p5. You should probably upgrade to BIND 8.2.2-p7 or later f=
or
security reasons.

Lastly, you can get rid of the "No default TTL" error messages by putting=
 a
$TTL directive at the top of all your master files (see
http://www.nominum.com/resources/faqs/bind-faq.html#nottl for more detail=
s).


- Kevin

nik at slums.de wrote:

> HI !
> I installed Bind 8.0 on my system. It works well, but only some time, a=
fter
> that it start loging a lot of error messages on no longer funktioning:
> Dec  8 10:30:05 Server named[8492]: sysquery: findns error (NXDOMAIN) o=
n
> localhost.0.168.192.in-addr.arpa?
> Dec  8 10:30:09 Server kernel: Packet log: input DENY ippp0 PROTO=3D17
> 212.185.253.9:53 62.224.116.153:5844 L=3D150 S=3D0x00 I=3D22505 F=3D0x0=
000 T=3D59
> (#106)
> Dec  8 10:30:09 Server kernel: Packet log: input DENY ippp0 PROTO=3D17
> 212.185.253.9:53 62.224.116.153:5844 L=3D155 S=3D0x00 I=3D22509 F=3D0x0=
000 T=3D59
> (#106)
> --------------------------------------------------
>
> and directly after starting named and making a query:
>
> ---------------------------------------------------------------
>
> Dec  8 10:37:32 Server named[13311]: starting.  named 8.2.2-P5 Sat Mar =
11
> 10:37:51 GMT 2000
> ^Iroot at Mersenne:/usr/src/packages/BUILD/bind8-8.2.2/bin/named
> Dec  8 10:37:32 Server named[13311]: hint zone "" (IN) loaded (serial 0=
)
> Dec  8 10:37:32 Server named[13311]: master zone "localhost" (IN) loade=
d
> (serial 42)
> Dec  8 10:37:32 Server named[13311]: master zone "0.0.127.in-addr.arpa"
> (IN) loaded (serial 42)
> Dec  8 10:37:32 Server named[13311]: Zone "slums" (file slums): No defa=
ult
> TTL set using SOA minimum instead
> Dec  8 10:37:32 Server named[13311]: master zone "slums" (IN) loaded
> (serial 1205001)
> Dec  8 10:37:32 Server named[13311]: Zone "0.168.192.in-addr.arpa" (fil=
e
> 0.168.192.in-addr.arpa): No default TTL set using SOA minimum instead
> Dec  8 10:37:32 Server named[13311]: master zone "0.168.192.in-addr.arp=
a"
> (IN) loaded (serial 120501)
> Dec  8 10:37:32 Server named[13311]: listening on [127.0.0.1].53 (lo)
> Dec  8 10:37:32 Server named[13311]: listening on [192.168.0.1].53 (eth=
0)
> Dec  8 10:37:32 Server named[13311]: Forwarding source address is
> [0.0.0.0].5876
> Dec  8 10:37:32 Server named[13312]: group =3D named
> Dec  8 10:37:32 Server named[13312]: user =3D named
> Dec  8 10:37:32 Server named[13312]: Ready to answer queries.
> Dec  8 10:37:37 Server named[13312]: sysquery: findns error (NXDOMAIN) =
on
> 192.168.0.1.slums?
> Dec  8 10:37:41 Server named[13312]: sysquery: findns error (NXDOMAIN) =
on
> localhost.0.168.192.in-addr.arpa?
> Dec  8 10:37:54 Server last message repeated 2 times
> Dec  8 10:37:54 Server named[13312]: sysquery: findns error (NXDOMAIN) =
on
> 192.168.0.1.slums?
> Dec  8 10:39:00 Server popper[13315]: connect from nik at 192.168.0.6
> (192.168.0.6)
>
> There seems to be an error in my 0.168.192.in-addr.arpa file. But after
> restarting named it works without any mistakes.
>
> My 0.168.192.in-addr.arpa looks like this :
>
> ---------------------------------------------
> authoritative data for slums
> ; nik engel
> @               IN      SOA     server.slums          faktotum.slums (
>                                 00120501        ;Serial (yymmddxx)
>                                 10800           ;Refresh 3 hours
>                                 3600            ;Retry 1 hour
>                                 3600000         ;Expire 1000 hours
>                                 86400 )         ;Minimum 24 hours
>
>                 IN      NS             localhost
>
> 20              IN      PTR             hp.slums
> 3               IN      PTR             livingroom.slums
> 6               IN      PTR             hermes.slums
> 7               IN      PTR             c400.slums
> 8               IN      PTR             oliver.slums
> 9               IN      PTR             drescher.slums
> 10              IN      PTR             drescher2.slums
> 2               IN      PTR             faktotum.slums
> 1               IN      PTR             server.slums
>
> ; CNAMES
> fs              IN      CNAME           intranet.slums
> -----------------------------------------------------
> My slums file:
>
> ; Authoritative data for slums
> ; nik engel
> @               IN      SOA server nik.slums (
>                                 001205001       ;Serial (yymmddxx)
>                                 10800           ;Refresh 3 hours
>                                 3600            ;Retry 1 hour
>                                 3600000         ;Expire 1000 hours
>                                 86400 )         ;Minimum 24 hours
>                 IN      NS              192.168.0.1
>
> ; HOSTS
> localhost       IN      A               127.0.0.1
> hp              IN      A               192.168.0.20
> livingroom      IN      A               192.168.0.3
> hermes          IN      A               192.168.0.6
> c400            IN      A               192.168.0.7
> oliver          IN      A               192.168.0.8
> drescher        IN      A               192.168.0.9
> drescher2       IN      A               192.168.0.10
> faktotum        IN      A               192.168.0.2
> server          IN      A               192.168.0.1
>
> ; CNAMES
> fs              IN      CNAME           intranet.slums
>
> ---------------------------------
>
> Anyone got a clou
>
> Nik
> --
> ----------------------------------------------
> Nik Engel
> Email: Nik.Engel at web.de www.slums.de
> ---------------------------------------------=AD






More information about the bind-users mailing list