Re: consolidating in-addr.arpa data

2023-09-19 Thread Petr Špaček
On 18. 09. 23 18:02, John Thurston wrote: Yep. I understand the IP space can be delegated, and some of it allocated for use by systems registering in MS DNS. But this isn't going to happen. There are multiple MS Active Directories, with registered machines scattered willy-nilly across the 10-

Re: unresolvable pms.psc.gov, but google/cloudflare/unbound work

2023-09-19 Thread Petr Špaček
On 18. 09. 23 15:29, Nicholas Miller wrote: I know this is an old thread but we are having issues resolving pms.psc.gov as well. Disabling DNSSec validation on a test server doesn’t solve the problem. I can add a forwarding zone for ha.psc.gov pointed to their NS servers and things work. I wou

Re: unresolvable pms.psc.gov, but google/cloudflare/unbound work

2023-09-19 Thread Ondřej Surý
> On 19. 9. 2023, at 9:25, Petr Špaček wrote: > > All can I tell you is "it works on my system" (with BIND, of course): I can reproduce this on BIND 9.16 (-c /dev/null as named.conf): ## BIND 9.19-dev 19-Sep-2023 09:33:51.633 validating pms.psc.gov/CNAME: no valid signature found 19-Sep-2023 0

Forwarders working differently on bind9.8 & bind9.11

2023-09-19 Thread Prashasti Arora
I have configured a new zone to forward certain queries to my application on 2 VMs (One local and the other in my network) through a specific port. I have 2 similar setups - they are identical, except that one uses bind9.8 and the other uses bind9.11. Configuration is also identical for both. On t

Re: unresolvable pms.psc.gov, but google/cloudflare/unbound work

2023-09-19 Thread Petr Špaček
On 19. 09. 23 9:53, Ondřej Surý wrote: On 19. 9. 2023, at 9:25, Petr Špaček wrote: $ bin/dig/dig +short -p 12345 pms.psc.gov @127.0.0.1 $ bin/dig/dig +noall +comments -p 12345 pms.psc.gov @127.0.0.1 ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: SERVFAIL, id: 45084 ;; flags: qr rd ra; Q

Re: Forwarders working differently on bind9.8 & bind9.11

2023-09-19 Thread Bob Harold
On Tue, Sep 19, 2023 at 7:28 AM Prashasti Arora wrote: > I have configured a new zone to forward certain queries to my application > on 2 VMs (One local and the other in my network) through a specific port. I > have 2 similar setups - they are identical, except that one uses bind9.8 > and the oth

Re: unresolvable pms.psc.gov, but google/cloudflare/unbound work

2023-09-19 Thread Nicholas Miller
Thanks for the help. I guess it is time to move to 9.18. _ Nicholas Miller, OIT, University of Colorado at Boulder > On Sep 19, 2023, at 1:53 AM, Ondřej Surý wrote: > > [External Email - Use caution] > > >> On 19. 9. 2023, at 9:25, Petr Špač

Re: Forwarders working differently on bind9.8 & bind9.11

2023-09-19 Thread Matus UHLAR - fantomas
On Tue, Sep 19, 2023 at 7:28 AM Prashasti Arora wrote: I have configured a new zone to forward certain queries to my application on 2 VMs (One local and the other in my network) through a specific port. I have 2 similar setups - they are identical, except that one uses bind9.8 and the other use

Re: Forwarders working differently on bind9.8 & bind9.11

2023-09-19 Thread Greg Choules via bind-users
Hi Prashasti. I'm on my phone, so I'll keep it brief. - ditch both 9.8 and 9.11; install 9.18 - why are you forwarding to yourself? 127.0.0.1 - get binary packet captures and look at them in Wireshark to see what's actually going on. - real IPs please. - why use "port xxx"? Cheers, Greg On Tue, 1