Re: [Pdns-users] Possible tcp listener issue
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hello, I didn't read the whole thread. But we had the same problem in past. Is it maybee a timeout mysql connection. We had this only system with out load. Ciao Marco Am 06.05.10 07:45, schrieb bert hubert: On Wed, May 05, 2010 at 11:27:13AM +0200, Ton van Rosmalen wrote: Our primary auth pdns didn't respond to tcp queries anymore where udp queries still worked. A restart solved the problem. I didn't think anything of it until I read these new messages on this thread. Could it be a shared problem between the recursor and auth server? Highly unlikely. Bert ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users - -- Marco Schrieck Bereichsleiter Entwicklung - -- InterNetX GmbH Maximilianstr. 6 93047 Regensburg Germany Tel. +49 941 59559-0 Fax +49 941 59579-050 www.internetx.com www.facebook.com/InterNetX www.twitter.com/InterNetX Geschäftsführer/CEO: Thomas Mörz Amtsgericht Regensburg, HRB 7142 ICQ: 232016987 -BEGIN PGP SIGNATURE- Version: GnuPG/MacGPG2 v2.0.14 (Darwin) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iQEcBAEBAgAGBQJL8RUTAAoJEN9yMHEBd2HnGRAIAMBtTvOoXVRUgT9sl59uWCSR ZDfJJTotO0ZoIyI3PrksCK95nQKmb9n+KnYrz+ZYPI9F7cCv5tnqGHUvQ28IFoXW xzxnVm6T50n+68XRW2/kj6l139U08ebuJ6tzKC0gYLQW0IdbfayBKJbdRCnBOPDs AKprkh9fWqyFPdUb/AEOfOzCRX5rnBwKP/5jzm4J1xT00LKApfo2LaK4/GwQpWIH ujsj/fuP81Kz680IrU7STHroaiREFJRpzlk4ehDlqDr7lnLuu6VuZqnJcquTpxwV GNMK/3Dwhaa+JQupU+hS+Zm1AhZunOkv0iO/mJ15ETz1trrzM/xLAgKTzbH64/s= =6nTU -END PGP SIGNATURE- ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users
Re: [Pdns-users] big diff between udp4-answers and udp4-queries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hello, It was an authoritative nameserver with 500k domains and 1000queries/s. The packetcache-hit was about 40% instead of the normal 60%. The amount of wrong answers was eqal as normal (from log). I didn't have a full statistic dump :-(, because it doesn't appear anymore. If I see this again I will send it. Regards Marco Am 08.04.10 20:05, schrieb bert hubert: It may be that you need to add the packetcache-hit statistic to make this fit. You may also be getting questions which are disallowed, and thus get no answer. Can you show your entire statistics dump? And this is the recursor? Bert On Wed, Apr 07, 2010 at 03:31:04PM +0200, InterNetX - Marco Schrieck wrote: Hi All, in one of our nameserver we have a problem with a big difference between udp4-answers and udp4-queries. udp4-answers 70535 Number of IPv4 answers sent out over UDP udp4-queries 146823 Number of IPv4UDP queries received Any hints, where can I find the Problem. The hardware seems to work correctly, other NS with same config work also with out problems. ciao Marco ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users - -- Marco Schrieck Bereichsleiter Entwicklung - -- InterNetX GmbH Maximilianstr. 6 93047 Regensburg Germany Tel. +49 941 59559-0 Fax +49 941 59579-050 Geschäftsführer/CEO: Thomas Mörz Amtsgericht Regensburg, HRB 7142 ICQ: 232016987 -BEGIN PGP SIGNATURE- Version: GnuPG/MacGPG2 v2.0.14 (Darwin) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iQEcBAEBAgAGBQJLxWzcAAoJEN9yMHEBd2HnOs4H/2BiWXEVg9zxpTO+mFzI9Nl8 C7FmJ2uVI6Bs1i+jEYj+U5UT2SBe1do7eUglslou4URHehP1YSy0SC3paFzBFqHR 4ziFwZwWJBxRDyvcnU89LLbceEdvEJN727Q9pq+YD+0KjOrgpGjkFZV0x+1ixEZA nSulFE+VvfBaoRCigHsWV1zgBLI7Lf/lVkTuNhcfmTui3vSi2C3Q9gdX4zOPp/Wv FE7urZf6WOT9XXiGjZiKlaLzlLHcQs6WwNNiTdDsbtaZm1fDmlhj8puDWBQrHYqg gcBGh5KRTiL7wR6PAkx4T5FTWnj2ZJoiW3d9d1CMlT38F+4ta7hQ9j47cAB7FEw= =mVLd -END PGP SIGNATURE- ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users
[Pdns-users] big diff between udp4-answers and udp4-queries
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi All, in one of our nameserver we have a problem with a big difference between udp4-answers and udp4-queries. udp4-answers70535 Number of IPv4 answers sent out over UDP udp4-queries146823 Number of IPv4UDP queries received Any hints, where can I find the Problem. The hardware seems to work correctly, other NS with same config work also with out problems. ciao Marco - -- InterNetX GmbH Maximilianstr. 6 93047 Regensburg Germany Geschäftsführer/CEO: Thomas Mörz Amtsgericht Regensburg, HRB 7142 -BEGIN PGP SIGNATURE- Version: GnuPG/MacGPG2 v2.0.14 (Darwin) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iQEcBAEBAgAGBQJLvIkYAAoJEN9yMHEBd2Hn0O0H/04o3XsPNLBQZJztUEz7vw1g GZXMD47JeuDxKUT/MbQEapnf9ORzHIfVxneF9mJvyWTh1BLvNkpTV8zBkyMtUVjm tn6lClFUPuUHJPC6tqQF7Pv59Uf6teW/X2AOdIoMMPHvT6BK5SL2fBP7cj3/DEoU EkQ2rlr4yvTvAa3R7vXLlrUpe/uqYlRDMSLR6pqUqR+RdtKTMt+BuvY+46s4hJWf MhxcMk+XHzhr4A6YPtRDZo3zrZB0cCiXz2N4EtsRNKgJNDpW1wY/1t6XICOSLgAa GFaeHqRxeHpN6tArZvYs7r8UhbClWXQLek/qZGPX/eSytAPmZyj2qsTYr2NYAzA= =MEsX -END PGP SIGNATURE- ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users
Re: [Pdns-users] External CNames
Hello all, I checked this in with our PDNS if we have an external CNAME then we have to write the content with a dot in the end, for internal cnames this doen't work there you must write the content without a dot. Can anybody confirm this behaivor ? Regards Marco On Tue, Mar 02, 2010 at 04:24:44PM -, Ian Mordey wrote: Thanks. Problem solved. -Original Message- From: James Devine [mailto:fxmul...@gmail.com] Sent: 02 March 2010 16:14 To: Ian Mordey Cc: pdns-users@mailman.powerdns.com Subject: Re: [Pdns-users] External CNames yes, we are using gmysql and we had a blank entry in the records table which was taken to be '.' so powerdns thought it was authoritative for '.', once we removed that entry we are now sending a status of SERVFAIL instead of NXDOMAIN. On Tue, Mar 2, 2010 at 8:54 AM, Ian Mordey ian.mor...@griffin.com wrote: James Did you ever get an answer to this question? We have the same issue.. Thanks Ian -Original Message- From: pdns-users-boun...@mailman.powerdns.com [mailto:pdns-users-boun...@mailman.powerdns.com] On Behalf Of James Devine Sent: 23 February 2010 16:58 To: pdns-users@mailman.powerdns.com Subject: [Pdns-users] External CNames I have a powerdns setup with a mysql backend, if I have a 3rd level host CNAMEd to an external domain, it answers but the status is NXDOMAIN, if it CNAMEs to a domain for which it is authoritative for it returns NOERROR. The recursor that powerdns is configured with is an external bind recursor which can resolve the external domains fine. Any idea where I might be going wrong? ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users signature.asc Description: Digital signature ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users
Re: [Pdns-users] DNSSEC was copy of SIDN presentation yesterday
Hi all, I did some test with DNSSEC at this weekend. PowerDNS can serve the Records but it answered with out RRSIG/NSEC records if the DO Flag is set (dig +dnssec). Also zone2sql seems cant parse signed zones. Instead of type 'NSEC' it deliver '#47'. Regards Marco On Fri, Jun 19, 2009 at 02:42:49PM +0200, Frank Louwers wrote: On 19 Jun 2009, at 14:27, bert hubert wrote: (message in Dutch about a Dutch presentation about DNS) Hallo allemaal, Zoals recent aangekondigd is er op de SIDN relatiedag een presentatie geweest over DNS, waar ik enkele van jullie ook ontmoet heb! Bert, Thank you for the presentation. I wasn't at the SIDN day, because it was dns.be 10th anniversary party :) They announced that they (and eurid, which is basically the same software) will implement dnssec this fall. Any idea how soon dnssec would be implemented in pdns? Regards, Frank De presentatie is te vinden op http://ds9a.nl/tmp/powerdns-sidn-presentatie.pdf Groeten, Bert Hubert -- http://www.PowerDNS.com Open source, database driven DNS Software http://netherlabs.nl Open and Closed source services ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users Marco Schrieck Bereichsleiter Entwicklung -- InterNetX GmbH Maximilianstr. 6 93047 Regensburg Germany Tel: +49 941 59559-0 Fax: +49 941 59579-050 Geschäftsführer/CEO: Thomas Mörz Amtsgericht Regensburg, HRB 7142 ICQ: 232016987 GPG-Key: 0xB44D5EAE GPG-Fingerprint: 8285 3373 9776 E21A 94B1 38B1 2E52 D28C B44D 5EAE signature.asc Description: Digital signature ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users
Re: re[Pdns-users] ply from unexpected source: x.x.x.x#16225, expected x.x.x.x#53
Hello, Maybee its an old dig version on your system ? Since July 2008 nameserver do source port randomization because the kaminsky bug. Regards Marco On Tue, Mar 17, 2009 at 01:42:28AM -0700, misterd wrote: PowerDNS server problem: if i dig for a domain in my slave server i get the following output dig @x.x.x.x www.xxx.nl ;; reply from unexpected source: x.x.x.x#16225, expected x.x.x.x#53 ;; reply from unexpected source: x.x.x.x#16225, expected x.x.x.x#53 ;; reply from unexpected source: x.x.x.x#16225, expected x.x.x.x#53 ; DiG 9.3.4-P1.1 @x.x.x.x www.xxx.nl ; (1 server found) ;; global options: printcmd ;; connection timed out; no servers could be reached tcpdump -ni any port 53 13:04:59.170932 IP y.y.y.y.53 z.z.z.z.48423: 12475*- 1/0/0 A z.z.z.z (49) 13:05:04.178045 IP z.z.z.z.48423 y.y.y.y.53: 12475+ A? www.xxx.nl. (33) 13:05:04.178187 IP y.y.y.y.53 z.z.z.z.48423: 12475*- 1/0/0 A z.z.z.z (49) 13:05:09.187709 IP z.z.z.z.48423 y.y.y.y.53: 12475+ A? www.xxx.nl. (33) 13:05:09.187860 IP y.y.y.y.53 z.z.z.z.48423: 12475*- 1/0/0 A z.z.z.z (49) where x.x.x.x is outside ip-adres (ip-adres of router) where y.y.y.y is inside ip-adres (local ip-adres of machine) where z.z.z.z is ip-adres of server doing the dig request why do i get an answer on the wrong port? everything looks good but it doesn't work, any help or tips? -- View this message in context: http://www.nabble.com/reply-from-unexpected-source%3A-x.x.x.x-16225%2C-expected-x.x.x.x-53-tp22536958p22536958.html Sent from the PowerDNS mailing list archive at Nabble.com. ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users Marco Schrieck -- InterNetX GmbH Maximilianstr. 6 93047 Regensburg Germany Tel: +49 941 59559-0 Fax: +49 941 59579-050 Geschäftsführer/CEO: Thomas Mörz Amtsgericht Regensburg, HRB 7142 ___ Pdns-users mailing list Pdns-users@mailman.powerdns.com http://mailman.powerdns.com/mailman/listinfo/pdns-users