yes, true the problem is from the firewall.
Thanks everyone for the tremendous support.
Ejaz
From: Warren Kumari [mailto:war...@kumari.net]
Sent: Sunday, January 4, 2015 5:09 PM
To: Mohammed Ejaz
Cc: Barry Margolin; comp-protocols-dns-b...@isc.org
Subject: Re: can't-resolve
On 04.01.15 08:43, Mohammed Ejaz wrote:
now everything is fine once the port > 1024 opened from the network
firewall. so it means not only 53 port requires to be open.
BIND (and other DNS servers) uses random port for outgoing requests.
som you really had firewall on the path...
--
Matus UHLAR
you'd been mistaken...
W
>
>
>
> -Original Message-
> From: bind-users-boun...@lists.isc.org
> [mailto:bind-users-boun...@lists.isc.org ] On Behalf Of Ejaz
> Sent: Sunday, December 28, 2014 11:10 AM
> To: 'Warren Kumari'; 'Barry Margolin'
> Cc: co
ber 28, 2014 11:10 AM
To: 'Warren Kumari'; 'Barry Margolin'
Cc: comp-protocols-dns-b...@isc.org
Subject: RE: can't-resolve
Thanks for the suggestion
I am sure No firewall at all. Also See I now I have reassigned the my
previous IP which is 212.119.64.12, after that eve
140
> Fax: +966 11 465 4735
>
> -Original Message-
> From: bind-users-boun...@lists.isc.org
> [mailto:bind-users-boun...@lists.isc.org] On Behalf Of Warren Kumari
> Sent: Saturday, December 27, 2014 2:27 AM
> To: Barry Margolin
> Cc: comp-protocols-dns-b...@isc.or
ocols-dns-b...@isc.org
Subject: Re: can't-resolve
Also, from querying from the outside (with TCP):
~# dig +tcp www.auth-servers.net @212.119.64.228
; <<>> DiG 9.10.1-P1 <<>> +tcp www.auth-servers.net @212.119.64.228 ;;
global options: +cmd ;; Got answer:
;; ->>H
plies (which go
>> to an ephemeral port).
>>
>>>
>>>
>>> Regards,
>>> Mohammed Ejaz
>>> CYBERIAR SAUDI ARABIA
>>> P.O.Box 301079, Riyadh 11372, Saudi Arabia
>>> Tel: +966 11 464 7114 Ext. 140
>>> Fax: +966 11 465 4
35
>>
>> -Original Message-
>> From: bind-users-boun...@lists.isc.org
>> [mailto:bind-users-boun...@lists.isc.org] On Behalf Of Matus UHLAR -
>> fantomas
>> Sent: Friday, December 26, 2014 7:35 PM
>> To: bind-users@lists.isc.org
>> Subject: Re: can't-re
..@lists.isc.org
> [mailto:bind-users-boun...@lists.isc.org] On Behalf Of Matus UHLAR -
> fantomas
> Sent: Friday, December 26, 2014 7:35 PM
> To: bind-users@lists.isc.org
> Subject: Re: can't-resolve
>
> On 26.12.14 19:21, Ejaz wrote:
> >When run "
: bind-users-boun...@lists.isc.org
[mailto:bind-users-boun...@lists.isc.org] On Behalf Of Matus UHLAR -
fantomas
Sent: Friday, December 26, 2014 7:35 PM
To: bind-users@lists.isc.org
Subject: Re: can't-resolve
On 26.12.14 19:21, Ejaz wrote:
>When run "dig a yahoo.com @212.119.64.228
On 26.12.14 19:21, Ejaz wrote:
When run "dig a yahoo.com @212.119.64.228 below is the ouput.
yahoo.com. (38)
17:39:41.363532 IP 212.119.64.228.37891 > 212.119.64.228.domain: 34168+
[1au] A? yahoo.com. (38)
17:39:42.246993 IP 212.119.64.228.53702 > 192.5.5.241.domain: 5
isc.org] On Behalf Of Matus UHLAR -
fantomas
Sent: Friday, December 26, 2014 6:46 PM
To: bind-users@lists.isc.org
Subject: Re: can't-resolve
>On 25.12.14 17:50, Mohammed Ejaz wrote:
>>as you said I modified the logging sections. but still external
>>domains are unable to re
On 25.12.14 17:50, Mohammed Ejaz wrote:
as you said I modified the logging sections. but still external domains
are unable to resolve. I wanted tell you one more thing when I reassign
my old IP which is 212.119.64.12 then everything works fine (I mean
interal autherative domain and external yah
UHLAR - fantomas'; bind-users@lists.isc.org
Subject: RE: can't-resolve
Query log says "Connection timed out error."
> yahoo.com
Server: [212.119.64.228]
Address: 212.119.64.228
DNS request timed out.
timeout was 2 seconds.
DNS request timed out.
timeout was
day, December 25, 2014 9:47 PM
To: bind-users@lists.isc.org
Subject: Re: can't-resolve
On 25.12.14 17:50, Mohammed Ejaz wrote:
>as you said I modified the logging sections. but still external domains
are
>unable to resolve. I wanted tell you one more thing when I reassign my
old
>
On 25.12.14 17:50, Mohammed Ejaz wrote:
as you said I modified the logging sections. but still external domains are
unable to resolve. I wanted tell you one more thing when I reassign my old
IP which is 212.119.64.12 then everything works fine (I mean interal
autherative domain and external ya
ind-users-boun...@lists.isc.org] On Behalf Of Steven Carr
Sent: Thursday, December 25, 2014 5:54 PM
To: Bind users
Subject: Re: can't-resolve
On 25 December 2014 at 14:50, Mohammed Ejaz wrote:
> I wanted tell you one more thing when I reassign my old IP which is
> 212.119.64.12 then everything w
On 25 December 2014 at 14:50, Mohammed Ejaz wrote:
> I wanted tell you one more thing when I reassign my old
> IP which is 212.119.64.12 then everything works fine (I mean interal
> autherative domain and external yahoo etc )without any problem
Check your firewall? is the new IP allowed to ta
ecember 25, 2014 12:29 PM
To: Bind users
Subject: Re: can't-resolve
On 25 December 2014 at 08:05, Mohammed Ejaz wrote:
> logging {
>
> channel querylog{
>
> file "/var/log/querylog";
> severity debug 10;
>
On 25 December 2014 at 08:05, Mohammed Ejaz wrote:
> logging {
>
> channel querylog{
>
> file "/var/log/querylog";
> severity debug 10;
> print-category yes;
> print-time yes;
> print-severi
.119.64.226
ns2 IN A 212.119.64.228
===========
-Original Message-
From: bind-users-boun...@lists.isc.org
[mailto:bind-users-boun...@lists.isc.org] On Behalf Of
Ah so this is to do with recursion.
Check the settings on the 212.119.64.228 server to ensure that
recursion is turned on and allowed for the clients that need to be
able to resolve domains that the server is not authoritative for.
You'll also have to make sure that 212.119.64.228 has unrestricted
c.org
[mailto:bind-users-boun...@lists.isc.org] On Behalf Of Steven Carr
Sent: Wednesday, December 24, 2014 4:54 PM
To: Bind users
Subject: Re: can't-resolve
On 24 December 2014 at 13:42, Mohammed Ejaz wrote:
> Any clue would be highly appreciated. thanks in advance.
What's the
On 24 December 2014 at 13:42, Mohammed Ejaz wrote:
> Any clue would be highly appreciated. thanks in advance.
What's the name of the zone so we can test from here?
Did you update the parent zone to tell it the nameserver IP for your
zone has changed?
If you explicitely try to query to the new
24 matches
Mail list logo