!AA Zone and several notifies ?

James Raftery james-bind-users at now.ie
Fri Feb 16 15:42:53 UTC 2001


On Fri, Feb 16, 2001 at 04:01:00PM +0100, Georges Olivier wrote:
> 1/ Why are they several sequences of NOTIFYing slave zone with 
> different number of NS and A ?

The zones have different numbers of nameservers.

> Sent NOTIFY for...(dune-concept.com); 1 NS, 1 A

Your nameserver notifed one other nameserver, which had one A record
associated with it.

> Sent NOTIFY for...(85.114.195.in-addr.arpa); 2 NS, 2 A

Your nameserver notifed two other nameservers, which had one A record
each, giving a total of two. If one of the nameservers was multihomed
you would see the A number higher than the NS number.

> 2/ What is the meaning of "Received NOTIFY answer (!AA)" ?

The answer packet received in response to the NOTIFY didn't have the AA
bit set. It should. This is a bug in versions before 8.2.3-REL. Your
8.2.3 nameserver is logging that FYI.

BTW, that means your slave isn't running 8.2.3-REL. Versions of BIND
before 8.2.3 have serious security vulnerabilites. It should be upgraded
ASAP.


Regards,

james
-- 
James Raftery (JBR54)
  "It's somewhere in the Red Hat district"  --  A network engineer's
   freudian slip when talking about Amsterdam's nightlife at RIPE 38.


More information about the bind-users mailing list