BIND - reverse dns queries only working locally, forward dns works fine.
I'm in way over my head here. I help run a very small hosting company. We recently moved from Windows 2000 DNS to BIND on Ubuntu, configuring with Webmin.
I'm more comfortable with Windows so I'm using NSLOOKUP to test the rDNS. A,CNAME,MX records are working fine outside and inside the network, but PTR records are only working internally. The only reason I need a PTR record working is because AOL rejects email servers without one. I really appreciate any expertise you can lend. I've been struggling with this for over a week :( Here are the results from NSLOOKUP Code:
> server 67.33.14.19 |
Hi,
Are you using views? Chances are that you have the reverse zone defined only in the view for the internal network. Could you post named.conf and the reverse zone file (masking any sensitive info)? Was the zone working on windows 2000 dns? Regards |
Thanks for the reply. Please let me know if there's any more information that might be helpful!
I don't think I'm using views. Sorry for the horrible answer. Everything was working fine on the Windows 2000 server. For some reason though reverse zones did not come over when I set up the Ubuntu as slave so I put in PTR records for everything and experimented with a reverse zone with one particular ip/domain. As a side question, In the Webmin menu, you can have "Reverse master zones" and "Forward zones with PTR records". Are these the same thing? Here is my named.conf Code:
// This is the primary configuration file for the BIND DNS server named. Code:
I have a named.conf.local with all of my domains in it. Code:
//include "/etc/bind/zones.rfc1918"; /var/lib/bind/1.2.3.4.rev [IP PROTECTED] Code:
$ttl 38400 |
Hi,
Quote:
For the rest: You don't need forwarders as you're running an authoritative name server. I guess that you have the hint zone included, so it can be used for resolving the rest of the domains. Remove the forward and forwarders options, restart bind and see if it works before proceeding further. It should work as it works from inside your network. Regarding the reverse zone, the zone name is different in named.conf.local and in the SOA in the zone file (1.2.3.4.in-addr.arpa. vs 4.3.2.1.in-addr.arpa.). Maybe it's a typo again, but in general a reverse zone uses only the first 3 octets of the IP address in reverse order, like 2.3.4.in-addr.arpa. Using dig and info from your 1st post I think that your ISP has assigned you only a subnet (128 IPs) of the whole 4.3.2.0/24 network. That's why I asked you if it was working before on windows. To verify if the subnet delegation is already done. That said, you may need to use 0/25.2.3.4.in-addr.arpa as a zone name. You maybe need to contact ISP to verify this. There is also an error (I guess it's a typo) in named.conf.options: Quote:
Code:
allow-recursion { any; }; |
All times are GMT -5. The time now is 06:06 AM. |