Hi Why would you delegate it to a third party name server? GoDaddy have explicitly told me that they do not and will not host the rDNS zone. They say it’s the IP issuers responsibility to hold the in-addr.arpa zones. With every other domain we have we have never had a problem like this. Is it not possible for you to be primary SOA for in-addr.arpa zones for IP addresses which you issue?
Thanks Adam From: Amreesh Phokeer <[email protected]> Sent: 03 October 2018 17:58 To: Adam Combrinck <[email protected]> Cc: Wadih Hanna <[email protected]>; [email protected]; Stanley Popiir Kumbol <[email protected]> Subject: Re: [DNSSEC-Ops] FW: Configuration [AFRINIC #631758] Hi Adam, AFRINIC has delegated the control of the 249.175.196.in-addr.arpa zone to ns53.domaincontrol.com<http://ns53.domaincontrol.com>. The only information in our own “parent zone” is who manages 249.175.196.in-addr.arpa > dig NS @ns3.afrinic.net 249.175.196.in-addr.arpa ; <<>> DiG 9.10.6 <<>> NS @ns3.afrinic.net 249.175.196.in-addr.arpa ; (1 server found) ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 40042 ;; flags: qr rd; QUERY: 1, ANSWER: 0, AUTHORITY: 2, ADDITIONAL: 1 ;; WARNING: recursion requested but not available ;; OPT PSEUDOSECTION: ; EDNS: version: 0, flags:; udp: 4096 ;; QUESTION SECTION: ;249.175.196.in-addr.arpa. IN NS ;; AUTHORITY SECTION: 249.175.196.in-addr.arpa. 172800 IN NS ns53.domaincontrol.com<http://ns53.domaincontrol.com>. <<<<<<<<<<<<<<<<<<<<<< 249.175.196.in-addr.arpa. 172800 IN NS ns54.domaincontrol.com<http://ns54.domaincontrol.com>. <<<<<<<<<<<<<<<<<<<<<< ;; Query time: 123 msec ;; SERVER: 204.61.216.100#53(204.61.216.100) ;; WHEN: Wed Oct 03 20:51:08 +04 2018 ;; MSG SIZE rcvd: 108 PTR record x.249.175.196.in-addr.arpa is unknown to us. Read carefully the error message in the screenshot you sent again, the error is on ns53.domaincontrol.com<http://ns53.domaincontrol.com> [cid:[email protected]] On 3 Oct 2018, at 18:30, Adam Combrinck <[email protected]<mailto:[email protected]>> wrote: Having spoken to GoDaddy they confirmed the Domain is healthy. Please see the below screenshot when using DNSWATCH to look up our mail server IP address. You will notice that the Afrinic nameserver NS3 is not returning the PTR record. Is this because the request from Airtel Tigo has not been actioned yet?
_______________________________________________ DNSSEC-Ops mailing list [email protected] https://lists.afrinic.net/mailman/listinfo/dnssec-ops
