How to reset the serial number?

2012-03-26 Thread Carlos Ribas
Hello all, I accidentally changed the serial number to one bigger than 32 bits and now I'm trying to reset the serial number. Following the manual of Bind9 I tried to add 2147483647 (2ˆ31-1) to the number and reload the server, but my slave is not updating to the new zone serial number. Here is

Re: How to reset the serial number?

2012-03-26 Thread Chuck Swiger
On Mar 26, 2012, at 11:30 AM, Carlos Ribas wrote: I accidentally changed the serial number to one bigger than 32 bits and now I'm trying to reset the serial number. Following the manual of Bind9 I tried to add 2147483647 (2ˆ31-1) to the number and reload the server, but my slave is not

Re: How to reset the serial number?

2012-03-26 Thread Carlos Ribas
Hello, I was doing some tests with DNSSEC in that zone. I used one day of signature lifetime, now it is expired. All this happen when I was trying to regenerate the signature. In fact, the problem is that my master did not see the serial change. If I run dig using the master I still

Re: How to reset the serial number?

2012-03-26 Thread Mark Pettit
Did it reject the zone when you used a too-large serial number? If so then that explains why digging against the master doesn't show an updated serial. On Mar 26, 2012, at 11:53 AM, Carlos Ribas wrote: Hello, I was doing some tests with DNSSEC in that zone. I used one day of

Bind 9.6-ESV-R5 errors

2012-03-26 Thread Jack Tavares
Hello I get several errors whenever I run rndc reload that look like this: named[9178]: 27-Mar-2012 05:56:00.798 general: error: zone 0.IN-ADDR.ARPA/IN/view_internal_dns: zone serial unchanged. zone may fail to transfer to slaves. named[9178]: 27-Mar-2012 05:56:00.798 general: error: zone

Re: Bind 9.6-ESV-R5 errors

2012-03-26 Thread Mark Andrews
In message 6134bb3286a31d4db61e57114e8ba7c0609bf...@seaembx01.olympus.f5net.co m, Jack Tavares writes: Hello I get several errors whenever I run rndc reload that look like this: named[9178]: 27-Mar-2012 05:56:00.798 general: error: zone 0.IN-ADDR.ARPA/IN/ view_internal_dns: zone serial

RE: Bind 9.6-ESV-R5 errors

2012-03-26 Thread Jack Tavares
Mark: Ignore them. They are from the built in empty zones. They are fixed in the next maintenance release. I notice that adding enable-empty-zones no; to the config stops these messages. Is there any downside to doing that? Thank you -- Jack ___

Re: masters ordering in named.conf

2012-03-26 Thread Chris Buxton
On Mar 23, 2012, at 10:54 AM, Eric Chandler wrote: I have a question with regards to ordering of masters in slave zones. In the example below, will the slave zone try these in order each and every time? [...] or does it choose at random? Masters are tried in the order listed. Regards,

Re: How to reset the serial number?

2012-03-26 Thread Chris Buxton
On Mar 26, 2012, at 11:30 AM, Carlos Ribas wrote: Hello all, I accidentally changed the serial number to one bigger than 32 bits and now I'm trying to reset the serial number. Following the manual of Bind9 I tried to add 2147483647 (2ˆ31-1) to the number and reload the server, but my

Re: Bind 9.6-ESV-R5 errors

2012-03-26 Thread Mark Andrews
In message 6134bb3286a31d4db61e57114e8ba7c0609bf...@seaembx01.olympus.f5net.co m, Jack Tavares writes: Mark: Ignore them. They are from the built in empty zones. They are fixed in the next maintenance release. I notice that adding enable-empty-zones no; to the config stops these