reject or drop AAAA queries

Alan Clegg aclegg at isc.org
Fri Jul 23 03:45:08 UTC 2010


On 7/22/2010 8:42 PM, Rock July wrote:
> This is my current setup right now and the reason why I want to reject
> or drop the AAAA queries;
>  
> PC Clients: XP, Vista and 7 (Vista and 7 clients are sending both A and
> AAAA queries) send queries to DNS A.
> DNS A: will just forward the query to My DNS
> MyDNS: will query to DNS B in behalf of DNS A.
> DNS B: hosting the domain name (sample: xxx.test.com)
>  
> DNS B only hosting A record for xxx.test.com so when it receive AAAA
> query, it respond "no such name" or NXDOMAIN.
> This result causes negative caching on MyDNS and name resolution will
> also fail for other client computers.
> I only have control on MyDNS so I am thinking if there is any way that I
> can reject/drop those AAAA queries so it will not query to DNS B.

If the server at DNS B is responding with NXDOMAIN to a query for
XXX.TEST.COM AAAA when XXX.TEST.COM A exists, then you need to find
someone else to host TEST.COM as DNS B is broken.

AlanC

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 260 bytes
Desc: OpenPGP digital signature
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20100722/58a23c41/attachment.bin>


More information about the bind-users mailing list