Re: Breaking up RFC 1918 reverse space

2011-07-25 Thread Peter Laws
$GENERATE and then actually delegating with 0-63.10.in-addr.arpa. IN NS ns1.edu. 64-127.10.in-addr.arpa. IN NS ns2.edu. etc Where I'm confused (or have confused myself) is the part about wanting to actually break the zone up (I want to break it up for the usual reasons -

Re: Multiple masters expected behavior?

2010-07-27 Thread Peter Laws
hough not round-robinning). Multiple masters is not about losing contact, it's about getting the most up-to-date version of the zone. There's no reason for the slave to A HA! So the answer to my original question, after all this, is "Yes" (this is expected behavior). Thank

Re: Multiple masters expected behavior?

2010-07-23 Thread Peter Laws
On 07/22/10 19:57, Barry Margolin wrote: In article, Peter Laws wrote: I have multiple interfaces on my master and multiple interfaces on most of my slaves. Is that expected behavior? Yes. What if the first server stops getting updates, but the second one does and has a higher

Multiple masters expected behavior?

2010-07-22 Thread Peter Laws
em to be the case however. In fact, in a few cases I've seen it seems to use both, though not round-robinning that I can see from the logs. Is that expected behavior? BIND 9.3.6-P1-RedHat-9.3.6-4.P1.el5_4.2 -- Peter Laws / N5UWY National Weather Center / Network Operations Center Univ

Re: Can't get hints or outside resolution.

2010-07-09 Thread Peter Laws
Hey! A firewall setting was wrong! Imagine that! Thanks, all. :-) On 07/09/10 14:18, Peter Laws wrote: On 07/09/10 02:23, Matus UHLAR - fantomas wrote: On 08.07.10 14:42, Peter Laws wrote: BIND 9.3.6-P1-RedHat-9.3.6-4.P1.el5_4.2 From the host itself, a slave for all my zones, I can

Re: Can't get hints or outside resolution.

2010-07-09 Thread Peter Laws
On 07/09/10 02:23, Matus UHLAR - fantomas wrote: On 08.07.10 14:42, Peter Laws wrote: BIND 9.3.6-P1-RedHat-9.3.6-4.P1.el5_4.2 From the host itself, a slave for all my zones, I can resolve all my zones. I cannot, however, resolve anything else. For example, if I dig google.com I get a

Re: Can't get hints or outside resolution.

2010-07-08 Thread Peter Laws
Yep, zone for hint is right. No interesting messages "service named checkconfig" (which RH has helpfully set up to run named-checkconf and named-checkzone) shows that all is well. :-( On 07/08/10 15:55, Warren Kumari wrote: On Jul 8, 2010, at 3:42 PM, Peter Laws wrote: BIN

Can't get hints or outside resolution.

2010-07-08 Thread Peter Laws
y thing different on this host vs my other slaves is some extra notifies and allow-transfers from when this was still a master for some zones (some other slaves *still* get a few zones from this host). Missing something easy, I'm sure. But what? -- Peter Laws / N5UWY National Weather Cent

Re: +, -, -E

2010-06-21 Thread Peter Laws
On 06/21/10 14:06, Justin T Pryzby wrote: On Mon, Jun 21, 2010 at 01:46:55PM -0500, Peter Laws wrote: What do they mean? I can't find them and yes, I've googled and also grepped the docs on isc.org ... Googling for symbols isn't easy.. http://www.isc.org/files/arm96.html#the_

+, -, -E

2010-06-21 Thread Peter Laws
What do they mean? I can't find them and yes, I've googled and also grepped the docs on isc.org ... I'm assuming it's some way of telling if the query was serviced or not ... -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of

Re: Running both a cache-only and an authoritative server on the same server

2010-06-17 Thread Peter Laws
work inside of view statements. Why not just have named run on as many interfaces as needed and let views sort it out? Views don't need to care which physical interface traffic is on. -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma Infor

Re: using TXT fields

2010-05-18 Thread Peter Laws
038" Post-Its are great, but they often fall off the monitor. This is a superior solution and has the benefit of being remotely accessible. Thanks for the "pro tip"! -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma

Re: Master server offline

2010-05-12 Thread Peter Laws
On 05/08/10 17:36, Chris Thompson as IP Register wrote: On May 7 2010, Peter Laws wrote: If he has a small number of slaves, the OP may not need a Tardis. It's If you do this, you need to restart BIND on the slave to have it notice the change. Similarly you can "touch" t

Re: [OT] MSDN use google apps for email hosting

2010-05-07 Thread Peter Laws
ail.com Funny, yes, but whois doesn't seem to point to M$ in any way. Independent? -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma Information Technology pl...@ou.edu ---

Re: Master server offline

2010-05-07 Thread Peter Laws
that policy may need review. If the OP serves his organization's DNS, it's pretty darn critical that customers be able to resolv their DNS info. -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma Informatio

Re: ftp.isc.org back up

2010-05-06 Thread Peter Laws
On 05/06/10 13:27, Lightner, Jeff wrote: They can't fool us - we know it was caused by the J server DNSSEC issue. Damn that DNSSEC!!! :-D -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma Information Technology pl...@o

Re: Preparing for upcoming DNSSEC changes on 5/5

2010-05-03 Thread Peter Laws
On 05/03/10 16:19, Mark Andrews wrote: The test is a rough guide to the maximum packet size supported by the path. So what would be the point of using edns-udp-size to something even smaller? None I can see ... What am I missing? -- Peter Laws / N5UWY National Weather Center / Network

Re: Preparing for upcoming DNSSEC changes on 5/5

2010-05-03 Thread Peter Laws
not on the dns-oarc.net page either, but I'm glad you mentioned it. Back to explicitly setting edns-udp-size to something smaller than the default, which seems to be 4096. Still not convinced this is necessary. -- Peter Laws / N5UWY National Weather Center / Network Operations Center Un

Re: Preparing for upcoming DNSSEC changes on 5/5

2010-05-03 Thread Peter Laws
re and there are far beyond my control (and the other 4 only marginally :-). Besides, we've seen one example where setting it smaller results in yet a smaller result. -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma Informatio

Re: Preparing for upcoming DNSSEC changes on 5/5

2010-05-03 Thread Peter Laws
e, sorry to say. Interestingly, it didn't come up (directly) during the Educause webinar about DNSSEC last week (.edu will be signed in July). -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Okla

Re: Re: Delegation - what needs to be there?

2010-03-29 Thread Peter Laws
a chicken-and-egg problem. This is what I thought but thought I'd make doubly certain. Thanks! Peter -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma Information Technolo

Delegation - what needs to be there?

2010-03-26 Thread Peter Laws
el5_4.2 if it matters. Peter -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma Information Technology pl...@ou.edu --- Feedback? Contact my director, Craig Cochell, cra...@ou.edu.

Re: Multiple masters?

2010-01-15 Thread Peter Laws
. masters { IPofserver1; IPofserver2; }; Our architecture is sub-optimal (among other things, hardest hit of all public servers is the master) and this is one more step towards getting out from under that. I'd love to have a master that wasn't even a published DNS server, but we're

Re: Multiple masters?

2010-01-15 Thread Peter Laws
Chris Buxton wrote: On Jan 14, 2010, at 5:04 PM, Peter Laws wrote: And I right in thinking that, on a slave, I can have multiple masters designated for a particular zone? I just have to make sure that the slave that is pretending to be the master allows transfers, right? Don't f

Multiple masters?

2010-01-14 Thread Peter Laws
problem? -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma Information Technology pl...@ou.edu --- Feedback? Contact my director, Craig Cochell, cra...@ou.edu. Thank you

Re: Re: Can I have a *.domain.com A record

2009-10-26 Thread Peter Laws
idea, then I need to tell my clients why ? Thanks Ram ___ bind-users mailing list bind-users@lists.isc.org <mailto:bind-users@lists.isc.org> https://lists.isc.org/mailman/listinfo/bind-users -- Peter Laws / N5UWY National Wea

Re: about $GENERATE Directive

2009-04-21 Thread Peter Laws
!!! As far as I know, $GENERATE supports only A, PTR, CNAME. -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma Information Technology pl...@ou.edu --- Feedback? Contact my director

Peaceful coexistence with Windows domain

2009-03-12 Thread Peter Laws
use views would help, but we'd like to avoid that, at least for now. Any quick fixes? I checked, and per the MS-People, MS-DNS cannot put ACLs on particular records. Neither can BIND, so no surprise there. Which rock do I need to look under? -- Peter Law

Re: XFR quota setting?

2009-03-12 Thread Peter Laws
led with the transfer-* settings and made the quota errors go away. Underlying issue seems to be traffic being intermittently blocked between the master and the slaves. Not really a BIND issue. -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of

Re: XFR quota setting?

2009-03-11 Thread Peter Laws
Niall O'Reilly wrote: On Wed, 2009-03-11 at 15:58 -0500, Peter Laws wrote: Looked in the docs but find no mention of how to set a quota (would like it to be infinite). Be careful what you wish for ... You may not need it any greater than it is. In my experience

XFR quota setting?

2009-03-11 Thread Peter Laws
Looked in the docs but find no mention of how to set a quota (would like it to be infinite). Mar 11 15:53:57.103 xfer-out: IXFR request denied: quota reached Assume there is a default quota of some sort that can be overridden? -- Peter Laws / N5UWY National Weather Center / Network

Re: Hostname Naming Compliance

2009-02-25 Thread Peter Laws
as fast as IPv6, maybe faster :), so maybe it /is/ time to update the naming standards. -- Peter Laws / N5UWY National Weather Center / Network Operations Center University of Oklahoma Information Technology pl...@ou.edu --

Re: Hostname Naming Compliance

2009-02-25 Thread Peter Laws
e added the "exception to Standard" that your PHBs are requiring. I've been telling folks that request _ in a name that they can no longer do that and change it to a -. I tell them that it *works*, but it violates the standards. No pushback yet. -- Peter Laws / N5UWY Nati

RHEL-specific named/SElinux query

2008-11-24 Thread Peter Laws
Not ISC BIND specific, but if someone could point me at the magic incantations to get RHEL 5.2's SELinux to play nice with named's logs (daemon is serving names fine), I'd be appreciative. Off-list would be best as this isn't really an ISC BIND issue. Thanks. -- Peter L

Re: Avoiding duplicate PTR records when using $GENERATE

2008-11-24 Thread Peter Laws
Bad Thing, especially for mailservers. Is there a way to use $GENERATE to just "fill the gaps"? No. Go look at your slave cache. The dupes pop right out since they have a tab at the beginning (since first few fields are the same). That's how I identified ours. Well, m