recursive querys to secondary nameserver

Jim Reid jim at rfc1035.com
Sat Apr 28 14:11:03 UTC 2001


>>>>> "Tony" == Tony Lill <ajlill at tardis.ajlc.waterloo.on.ca> writes:

    Tony> I disallow recursive queries to my external DNS servers. For
    Tony> the last month or so I've been getting messages like the
    Tony> following, but only on my secondary nameserver:

    Tony> denied recursion for query from [198.164.220.3].35345 for
    Tony> www.ajlc.waterloo.on.ca

    Tony> I believe they started showing up about the same time I
    Tony> upgraded to bind 8.2.3 on RedHat 7.0.

It has nothing to do with the upgrade. Well maybe you're paying more
attention to the logs or the logging has been set up correctly after
doing the upgrade. The client that's making the unwanted recursive
query (198.164.220.3) probably doesn't know or care what version of
BIND you're running or whether your server accepts recursive queries
or not. You'll need to ask the owner of that client why they are
querying your server when you don't want them to do that.


More information about the bind-users mailing list