There are other things that can cause this, apart from a misconfigured firewall. I had the same problem - my logs looked like this:
Code:
May 11 21:53:20 mypc named[1357]: error (network unreachable) resolving 'ns-1564.awsdns-03.co.uk/A/IN': 2001:630:181:35::83#53
May 11 21:53:20 mypc named[1357]: error (network unreachable) resolving 'ns-1564.awsdns-03.co.uk/AAAA/IN': 2001:630:181:35::83#53
May 11 21:53:26 mypc named[1357]: error (network unreachable) resolving 'ns-1564.awsdns-03.co.uk/A/IN': 2001:502:ad09::3#53
May 11 21:53:26 mypc named[1357]: error (network unreachable) resolving 'ns-1564.awsdns-03.co.uk/AAAA/IN': 2001:502:ad09::3#53
May 11 21:53:27 mypc named[1357]: error (network unreachable) resolving 'ns-1564.awsdns-03.co.uk/A/IN': 2a01:40:1001:35::2#53
May 11 21:53:27 mypc named[1357]: error (network unreachable) resolving 'ns-1564.awsdns-03.co.uk/AAAA/IN': 2a01:40:1001:35::2#53
May 11 21:53:31 mypc named[1357]: success resolving 'indiabroadband.net/A' (in 'indiabroadband.net'?) after reducing the advertised EDNS UDP packet size to 512 octets
May 11 21:53:38 mypc named[1357]: success resolving 'releases.mozilla.org/A' (in 'mozilla.org'?) after reducing the advertised EDNS UDP packet size to 512 octets
and so on. The solution turned out to be simple: I had an old entry in the "forwarders" section of /etc/bind/named.conf.options:
Code:
forwarders {
192.168.2.100;
};
The DNS server 192.168.2.100 was part of an old network configuration and no longer existed on the network. So all the errors were telling me, I think, was that the local bind9 server was trying to poll another DNS server (192.168.2.100) that it could not reach. Presumably the occasional successful DNS resolution occurred when it stopped trying this server and tried another one (the default gateway, perhaps - not really sure how this works).
Anyway, changing that IP address under the "forwarders" section to the IP address of my current main DNS server (my home router) fixed the problem.
EDIT: I just saw more, similar, messages in my syslog. So there may be more going on, and the problem I resolved may not have been the (sole) cause of the messages. There are certainly fewer of the messages now but the ones that do occur are similar:
Code:
May 12 00:24:31 mypc named[5844]: success resolving 'googlemail.l.google.com/A' (in '.'?) after disabling EDNS
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'B.ROOT-SERVERS.NET/AAAA/IN': 2001:503:ba3e::2:30#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'G.ROOT-SERVERS.NET/AAAA/IN': 2001:503:ba3e::2:30#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'B.ROOT-SERVERS.NET/AAAA/IN': 2001:500:2f::f#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'G.ROOT-SERVERS.NET/AAAA/IN': 2001:500:2f::f#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'B.ROOT-SERVERS.NET/AAAA/IN': 2001:500:1::803f:235#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'G.ROOT-SERVERS.NET/AAAA/IN': 2001:500:1::803f:235#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'B.ROOT-SERVERS.NET/AAAA/IN': 2001:7fe::53#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'B.ROOT-SERVERS.NET/AAAA/IN': 2001:503:c27::2:30#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'G.ROOT-SERVERS.NET/AAAA/IN': 2001:7fe::53#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'B.ROOT-SERVERS.NET/AAAA/IN': 2001:7fd::1#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'G.ROOT-SERVERS.NET/AAAA/IN': 2001:503:c27::2:30#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'B.ROOT-SERVERS.NET/AAAA/IN': 2001:500:3::42#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'G.ROOT-SERVERS.NET/AAAA/IN': 2001:7fd::1#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'B.ROOT-SERVERS.NET/AAAA/IN': 2001:dc3::35#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'G.ROOT-SERVERS.NET/AAAA/IN': 2001:500:3::42#53
May 12 00:24:42 mypc named[5844]: error (network unreachable) resolving 'G.ROOT-SERVERS.NET/AAAA/IN': 2001:dc3::35#53
May 12 00:24:42 mypc named[5844]: success resolving 'B.ROOT-SERVERS.NET/AAAA' (in '.'?) after disabling EDNS
May 12 00:24:42 mypc named[5844]: success resolving 'G.ROOT-SERVERS.NET/AAAA' (in '.'?) after disabling EDNS
May 12 00:24:43 mypc named[5844]: success resolving './NS' (in '.'?) after disabling EDNS
and so on. Seems I haven't got to the bottom of the problem.