How to prevent slaves from contacting master for name resolution?

Todd Snyder tsnyder at rim.com
Tue May 18 13:31:32 UTC 2010


Are all the slaves authoritative for all the zones?  If so, unless
you're using forwarding, or some really odd delegation, queries
shouldn't be going to the master servers.

Todd.

-----Original Message-----
From: bind-users-bounces+tsnyder=rim.com at lists.isc.org
[mailto:bind-users-bounces+tsnyder=rim.com at lists.isc.org] On Behalf Of
Keith Christian
Sent: Monday, May 17, 2010 5:59 PM
To: bind-users at lists.isc.org
Subject: How to prevent slaves from contacting master for name
resolution?

Our redundant DNS configuration is one master and three slaves, spread
across two colo facilities.

master and slave1 are in colo_ALPHA.
slave2 and slave3 are in colo_BETA.

During an extended maintenance window, the master DNS was offline.
Slave2 was trying to contact the master, and lookups failed.  Usually,
slave2 resolves without contacting the master, but occasionally it
does.

The IP for the master does not appear in slave2's /etc/resolv.conf,
and I'm not sure what else to check for on slave machines.  Where else
would I look?  Would any settings in named.conf account for this
behavior?

Versions are Linux (CentOS 5) and BIND 9.5.x.

Thanks.

======Keith
_______________________________________________
bind-users mailing list
bind-users at lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

---------------------------------------------------------------------
This transmission (including any attachments) may contain confidential information, privileged material (including material protected by the solicitor-client or other applicable privileges), or constitute non-public information. Any use of this information by anyone other than the intended recipient is prohibited. If you have received this transmission in error, please immediately reply to the sender and delete this information from your system. Use, dissemination, distribution, or reproduction of this transmission by unintended recipients is not authorized and may be unlawful.



More information about the bind-users mailing list