RE: [EXTERNAL] Re: Domain Control Validation

2020-10-30 Thread Khuu, Linh Contractor via bind-users
Thank you for verifying the function of CNAME. I just want to check if it can be done. I know we do "TXT" for domain control validation of the webserver. Thanks, Linh Khuu From: Reindl Harald Sent: Friday, October 30, 2020 1:20 PM To: Khuu, Linh Contractor ; bind-users@lists.isc.o

Domain Control Validation

2020-10-30 Thread Khuu, Linh Contractor via bind-users
Hello, I have a question. Does anyone know if CNAME can be added for Domain Control Validation. For example, www.example.com 3600 IN CNAME _8DA14D435F7042B71E212832EBFFD76B.www.geocerts.net Can this record be done in BIND? Thanks, Linh Khuu Network Security Specialist

DNS TXT record for verification with CNAME

2015-12-11 Thread Khuu, Linh Contractor
Hello, We have a request to add TXT record for verification for a subdomain. We already have a CNAME record for that subdomain. Currently, we have this: oig.ssa.gov.36000 IN CNAME dualstack.mc-1231-1799228220.us-east-1.elb.amazonaws.com. Will there be an error or problem

RE: Does anyone have DNSSEC problem with uscg.mil

2013-11-14 Thread Khuu, Linh Contractor
l.com] Sent: Thursday, November 14, 2013 1:16 PM To: Khuu, Linh Contractor Cc: Bind Users Mailing List Subject: Re: Does anyone have DNSSEC problem with uscg.mil Not at this moment : $ dig @8.8.8.8<http://8.8.8.8> mx uscg.mil<http://uscg.mil>. +dnssec ; <<>> DiG 9.8.4-

Does anyone have DNSSEC problem with uscg.mil

2013-11-14 Thread Khuu, Linh Contractor
Hi, Does anyone have any DNSSEC problem with uscg.mil. On our DNS servers, we have seen broken trust chain error and the validation failed. 14-Nov-2013 12:57:37.486 lame-servers: error (broken trust chain) resolving 'uscg.mil/A/IN': 199.211.218.6#53 14-Nov-2013 12:57:37.573 lame-servers: error

named crashed

2012-12-10 Thread Khuu, Linh Contractor
Hello, Our named just crashed this morning. I looked into the log, and saw the following errors in the log. What is dst_api.c? Why did it fail? Has anyone experience with this error? What do I do to prevent this error from happening again? We're running BIND 9.8.3-P1. 10-Dec-2012 12:05:51.118

DNSSEC for NS delegation record

2012-07-17 Thread Khuu, Linh Contractor
Hi, I have questions about how to configure the DNS with NS delegation record once it's signed. My DNS server is the parent zone, for example, "testing.net" and is signed with DNSSEC. My zone configuration is as follows: $TTL 36000 $INCLUDE /var/named9/dnssec-testing/Ktesting.net..+007+32934.

RE: Format of the IPv6 reversed zone

2011-07-28 Thread Khuu, Linh Contractor
Thanks Jay and Leonard for the pointers of IPv6 format. Linh Khuu -Original Message- From: Jay Ford [mailto:jay-f...@uiowa.edu] Sent: Thursday, July 28, 2011 2:22 PM To: Khuu, Linh Contractor Cc: 'bind-users@lists.isc.org' Subject: Re: Format of the IPv6 reversed zone On T

Format of the IPv6 reversed zone

2011-07-28 Thread Khuu, Linh Contractor
Hello, I'm new to IPv6 configuring in BIND. I need help. The forward zone is simple enough with record, but the reversed zone is a bit confusing to me. For example, I want to add a hostname of www.example.com to 2001:1930:c00::2. This IPv6 address is /48. How can

RE: IPv6 prefix length error

2011-04-29 Thread Khuu, Linh Contractor
refix length error On 04/29/2011 02:17 PM, Khuu, Linh Contractor wrote: > Thanks Mark for your recommendation!!! > > However, in the ifconfig -a output, I have: > > lo0: > flags=e08084b > inet 127.0.0.1 netmask 0xff00 broadcast 127.255.255.255 > inet6 ::

RE: IPv6 prefix length error

2011-04-29 Thread Khuu, Linh Contractor
S Contract Office: 410-966-0798 Pager: 410-232-2350 Email: linh.k...@ssa.gov -Original Message- From: Mark Andrews [mailto:ma...@isc.org] Sent: Thursday, April 28, 2011 7:53 PM To: Khuu, Linh Contractor Cc: 'bind-users@lists.isc.org' Subject: Re: IPv6 prefix length error In me

IPv6 prefix length error

2011-04-28 Thread Khuu, Linh Contractor
Hello, We just added the IPv6 address on our DNS servers. When we started named, we see these errors in the log: prefix length for 2001:1930:e03::e is unknown (assume 128) prefix length for ::1 is unknown (assume 128) So far, named is still running fine... I can't find any information to correc

named crashed (mem.c:1099: INSIST(ctx->stats[i].gets == 0U) failed)

2011-04-12 Thread Khuu, Linh Contractor
Hi, Last night, our named crashed with the following errors: daemon:crit named[221184]: mem.c:1099: INSIST(ctx->stats[i].gets == 0U) failed daemon:crit named[221184]: exiting (due to assertion failure) named restarted fine and running without any problem. Does anyone have any idea why named cra

Deny query to specific domain

2011-04-05 Thread Khuu, Linh Contractor
Hello, Is there a way in BIND to deny or block query to a specific domain? For example, I don't want anyone within my organization to do query on "example.com". Is there any option in named.conf allow to do that? Thanks Linh Khuu ___ bind-users maili