config error or just slightly broken servers?
Kirk
bind at kirkb.net
Wed Jul 16 12:12:21 UTC 2008
Carl Byington wrote:
> client 144.160.112.12#60196: view normal: query (cache)
> '192.60.147.205.in-addr.arpa/PTR/IN' denied
> client 144.160.128.139#47522: view normal: query (cache)
> '192.60.147.205.in-addr.arpa/PTR/IN' denied
>
> The above was logged on ns1 == 205.147.60.192 running 9.5.1b1
>
> BTW, thanks to everyone that made that possible!
>
> The question is, why are att/sbc dns servers asking 205.147.60.192 for
> that PTR record? I believe they should ask one of:
>
> ;; ANSWER SECTION:
> 60.147.205.in-addr.arpa. 7200 IN NS la-dns3.digilink.net.
> 60.147.205.in-addr.arpa. 7200 IN NS la-dns1.digilink.net.
> 60.147.205.in-addr.arpa. 7200 IN NS la-dns2.digilink.net.
>
Look at the trace output.
; <<>> DiG 9.4.3b2 <<>> +trace -x 205.147.60.192
;; global options: printcmd
. 475084 IN NS C.ROOT-SERVERS.NET.
. 475084 IN NS B.ROOT-SERVERS.NET.
. 475084 IN NS H.ROOT-SERVERS.NET.
. 475084 IN NS K.ROOT-SERVERS.NET.
. 475084 IN NS A.ROOT-SERVERS.NET.
. 475084 IN NS J.ROOT-SERVERS.NET.
. 475084 IN NS M.ROOT-SERVERS.NET.
. 475084 IN NS E.ROOT-SERVERS.NET.
. 475084 IN NS L.ROOT-SERVERS.NET.
. 475084 IN NS G.ROOT-SERVERS.NET.
. 475084 IN NS D.ROOT-SERVERS.NET.
. 475084 IN NS F.ROOT-SERVERS.NET.
. 475084 IN NS I.ROOT-SERVERS.NET.
;; Received 500 bytes from 127.0.0.1#53(127.0.0.1) in 15 ms
205.in-addr.arpa. 86400 IN NS henna.ARIN.NET.
205.in-addr.arpa. 86400 IN NS figwort.ARIN.NET.
205.in-addr.arpa. 86400 IN NS dill.ARIN.NET.
205.in-addr.arpa. 86400 IN NS epazote.ARIN.NET.
205.in-addr.arpa. 86400 IN NS indigo.ARIN.NET.
205.in-addr.arpa. 86400 IN NS chia.ARIN.NET.
205.in-addr.arpa. 86400 IN NS BASIL.ARIN.NET.
;; Received 196 bytes from 192.33.4.12#53(C.ROOT-SERVERS.NET) in 46 ms
60.147.205.in-addr.arpa. 86400 IN NS la-dns1.digilink.net.
60.147.205.in-addr.arpa. 86400 IN NS la-dns2.digilink.net.
;; Received 101 bytes from 192.5.6.32#53(chia.ARIN.NET) in 67 ms
192.60.147.205.in-addr.arpa. 7200 IN CNAME 192.palisades-media.com.
192.palisades-media.com. 1800 IN PTR ns1.five-ten-sg.com.
palisades-media.com. 1800 IN NS ns.palisades-media.com.
palisades-media.com. 1800 IN NS la-dns1.digilink.net.
palisades-media.com. 1800 IN NS la-dns2.digilink.net.
;; Received 233 bytes from 205.147.0.102#53(la-dns2.digilink.net) in 53 m
More information about the bind-users
mailing list