RPZ Errors

Crist Clark cjc+bind-users at pumpky.net
Fri Nov 8 23:52:07 UTC 2013


I've just set up an RPZ using a third party feed. I am getting lots and
lots of "info" and "warning" messages in the logs. However, I am not sure
whether they actually are indicative of a problem I that may be impacting
operations or just a "nice to know" about something over which I have no
control anyway (like lame server whining).

I see several types of messages, "time outs,"

"2013-11-08 15:06:53 PST","daemon","WARNING","named[32015]","client
172.26.216.139#58010 (ads1.msads.net): rpz NSIP rewrite
2-04-0073-0006.cdx.hwcdnlb.net via cdx.hwcdnlb.net NS db_find() failed:
timed out"

And "duplicate queries,"

"2013-11-08 15:06:50 PST","daemon","INFO","named[32015]","client
172.26.216.139#58010 (ads1.msads.net): rpz NSIP rewrite
2-04-0073-0006.cdx.hwcdnlb.net via cdx.hwcdnlb.net unrecognized NS
db_find() failed: duplicate query"

And a generic failed "failure,"

"2013-11-08 15:06:34 PST","daemon","WARNING","named[32015]","client
10.10.10.215#4390 (
0.0.295.0.0.3.0.0.59.aa.2b.0.0.0.60.08.03.efbbd39f722e543fbb8d70c34c27c90d6bcf8725fa7f13247036090d8761e70.f.08.s.sophosxl.net):
rpz NSIP rewrite
0.0.295.0.0.3.0.0.59.aa.2b.0.0.0.60.08.03.efbbd39f722e543fbb8d70c34c27c90d6bcf8725fa7f13247036090d8761e70.f.08.s.sophosxl.netvia
f.08.s.sophosxl.net NS db_find() failed: failure"

And my favorite reason, which I won't bother to include a log entry since
they're all on internal zones other readers couldn't troubleshoot anyway,
"glue."

I can't find any documentation of what these mean and if they are cause for
concern.

This is BIND 9.9.2 (Infoblox 6.7.3).
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20131108/b3a6d86d/attachment.html>


More information about the bind-users mailing list