SOA serial rotation

Mark Andrews Mark_Andrews at isc.org
Mon Dec 5 21:18:42 UTC 2005


> Gregory Hicks wrote:
> >>To: comp-protocols-dns-bind at isc.org
> >>From: base60 <nobody at whitehouse.com>
> >>Subject: Re: SOA serial rotation
> >>Date: Thu, 01 Dec 2005 02:12:54 GMT
> >>
> >>Sam Wilson wrote:
> >>
> >>>Can anyone provide a current reference showing how to recover from a
> >>>mistakenly high value of the SOA serial number?
> >>
> >>Change it to a zero, let it flush through and then reset.
> > 
> > 
> > But doing this causes problems with those servers elsewhere on the
> > internet.  Serial numbers get out of whack and then require manual
> > intervention.
> 
> Depends, I suppose.  I've used this up to Bind8 and it never caused
> a problem for me.

	Depending upon a bug is never a good idea.  From memory
	this is fixed in later versions of BIND 8.  It was never
	misimplemented in BIND 9.

> > If you bump the serial properly, then they will discard the info
> > sooner.  Which is what you really want.
> 
> "Properly" doesn't matter after-the-fact.  I'm not being pissy, just
> pointing out that once it's done, it's done and you clean up as best
> as you can.

	There are correct ways to roll over the serial number.
	Just setting to zero is not one of them.  Providing advice
	which works with *all* rfc compliant nameservers is what
	the rest of us were doing.

	Mark
--
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: Mark_Andrews at isc.org



More information about the bind-users mailing list