In article <mailman.797.1290017599.555.bind-us...@lists.isc.org>,
 "Moore, Mark A." <mmo...@osmre.gov> wrote:

> We are running into a issue where one of our slave servers isn't resolving 
> non-local domain names.  For the two domains hosted on this server, we can 
> resolve any entry. However, if we try to do an nslookup to cnn, google, 
> yahoo, etc. it fails. We have turned off iptables and verified internet 
> connectivity. Below is the error we get. What other areas should we be 
> looking at to troubleshoot?

Make sure your firewall allows the first server to go out to the 
Internet on UDP port 53.

Can you post its named.conf?

> 
> Thx in advance for any help given.
> 
> nslookup www.cnn.com
> ;; Got SERVFAIL reply from 192.243.160.18, trying next server
> Server: 192.243.130.42
> Address: 192.243.130.42#53
> 
> Non-authoritative answer:
> Name: www.cnn.com
> Address: 157.166.226.26
> Name: www.cnn.com
> Address: 157.166.255.18
> Name: www.cnn.com
> Address: 157.166.255.19
> Name: www.cnn.com
> Address: 157.166.224.25
> Name: www.cnn.com
> Address: 157.166.224.26
> Name: www.cnn.com
> Address: 157.166.226.25
> 
> 
> Mark

-- 
Barry Margolin, bar...@alum.mit.edu
Arlington, MA
*** PLEASE don't copy me on replies, I'll read them in the group ***
_______________________________________________
bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to