Why would BIND timeout on only 'A' results?

Merton Campbell Crockett mcc at CATO.GD-AIS.COM
Sat Aug 13 00:17:02 UTC 2005



On Fri, 12 Aug 2005, Dave Clark wrote:

> Check out this strangeness.  Keep in mind I am not the owner of this domain.
> I'm just helping this guy with diagnosing the problem with his dns server:
> 
> dig cawunited.com (times out)
> http://www.dollardns.net/cgi-bin/dnscrawler/index.pl?name=cawunited.com&lr=6&submit=BU
> 
> Now, maybe it isn't BIND's fault.  Maybe there is an intermediate gateway or
> router that is specifically blocking these kinds of responses, but that
> would be very strange.  Looking for ideas on the explanation.

It may be more of a problem with DNS Crawler.  It works fine with dig and 
my home brew equivalent of DNS Crawler.

There does seem to be something of a problem with UDP and the router just 
beyond Comcast's router at 68.86.100.86.  Need to switch traceroute from 
its default UDP to ICMP to reach CAWUNITED.COM.

This is a good example of why you don't want both name servers for a 
domain on the same network.

Merton Campbell Crockett

-- 
BEGIN:				vcard
VERSION:			3.0
FN:				Merton Campbell Crockett
ORG:				General Dynamics Advanced Information Systems;
				Intelligence and Exploitation Systems
N:				Crockett;Merton;Campbell
EMAIL;TYPE=internet:		mcc at CATO.GD-AIS.COM
TEL;TYPE=work,voice,msg,pref:	+1(805)497-5045
TEL;TYPE=work,fax:		+1(805)497-5050
TEL;TYPE=cell,voice,msg:	+1(805)377-6762
END:				vcard



More information about the bind-users mailing list