Win2k DNS as secondry to Bind

Kevin Darcy kcd at daimlerchrysler.com
Tue May 15 20:34:30 UTC 2001


Does the 2.2.2.2 machine have multiple interfaces? Maybe you were seeing
the zone transfer requests originating from an unexpected interface. If
this is the case, there should be some "denied IXFR" or "denied AXFR"
messages in your error logs, and they will show the source address of
the slave-wannabe.


- Kevin

ereza at meetu.com wrote:

> Greetings
>
> in my named.conf i have
> allow-transfer { 1.1.1.1; 2.2.2.2;};
>
> while 1.1.1.1 and 2.2.2.2 are 2 win2k dns servers, i was able to
> create a zone transfer from the second dns (2.2.2.2) but not from the
> first one.
> only after changing the named.conf to
> allow-transfer {any; };
> the first dns (1.1.1.1) was able to get the zone transfer.
>
> why is it happening? it is not a firewall problem since i made a
> temporary role ANY=ANY to test it.
>
> Linux Suse 7.1
> Bind 8.2.3-91
>
> thanks





More information about the bind-users mailing list