<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
</head>
<body>
<br>
Hello,<br>
Sorry for the delay. I was dealing with multiple problems at once.
The largest and most pressing was whether the server would continue
to run with a couple of broken inodes. Now that that is out of the
way.<br>
<br>
In answer to Brian's questions.<br>
<br>
Both servers are on the same nat'ed subnet. one at
192.168.100.0/24. The primary name server does have an outside
address. ns1.xyonet.com is 208.105.217.26. port 53 is forwarded to
192.168.100.30.<br>
<br>
dig doesn't return an error, I just doesn't return an address, but
it is actually making the query to the resolver that is adjacent at
192.168.100.20 <br>
<br>
<font size="4" face="monospace">root@sirius:~# dig sirius.xyonet.com<br>
<br>
; <<>> DiG 9.16.33-Debian <<>>
sirius.xyonet.com<br>
;; global options: +cmd<br>
;; Got answer:<br>
;; ->>HEADER<<- opcode: QUERY, status: SERVFAIL, id:
10323<br>
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL:
1<br>
<br>
;; OPT PSEUDOSECTION:<br>
; EDNS: version: 0, flags:; udp: 4096<br>
;; QUESTION SECTION:<br>
;sirius.xyonet.com. IN A<br>
<br>
;; Query time: 0 msec<br>
;; SERVER: 192.168.100.20#53(192.168.100.20)<br>
;; WHEN: Wed Dec 07 13:32:48 EST 2022<br>
;; MSG SIZE rcvd: 46<br>
</font><font size="4"> </font><br>
again, it's only for the locally host domain at 192.168.100.30<br>
<br>
I just added to the recursor.conf
forward-zones=xyonet.com=192.168.100.30 and that worked. I would
now call this solved.<br>
<br>
<div class="moz-cite-prefix">On 12/6/22 21:45, Leeflangetje via
Pdns-users wrote:<br>
</div>
<blockquote type="cite"
cite="mid:8f87ec02cdca3244e26d60c8463c07dcd393fb44.camel@gmail.com">
<meta http-equiv="content-type" content="text/html; charset=UTF-8">
<div>You did not report back the results of the other 2
troubleshoot actions that Brian suggested (dig and tcpdump)</div>
<div>These could hold clues to the cause of your problem.</div>
<div><br>
</div>
<div>On Tue, 2022-12-06 at 14:33 -0500, Curtis Maurand via
Pdns-users wrote:</div>
<blockquote type="cite" style="margin:0 0 0 .8ex; border-left:2px
#729fcf solid;padding-left:1ex">
<div> <font face="Helvetica, Arial, sans-serif">OK, just did
the upgrade and adjusted the tables accordingly. I don't
like the fact that the update clobbered the /etc/init.d/pdns
file. We don't all run distributions with systemd. Systemd
is big and buggy, not to mention the controtions one has to
go through to get things to work properly. My system is way
more manageable without it. More stable, too. I knew I
needed to do upgrade, debian hasn't upgraded the version in
their repos. I added the powerdns repo to the
sources.list.d/pdns. I digress. I'm now running 4.7.2. It
took a few minutes to get the supermaster/superslave set up
and working. <br>
<br>
Things are working from outside and pretty fast, too. It's
internally where things aren't working. the internal
recursor is not resolving anything that is hosted. wierd.<br>
<br>
--Curtis<br>
<br>
<br>
</font><br>
</div>
<div class="moz-cite-prefix">On 12/6/22 12:52, Brian Candler
wrote:<br>
</div>
<div> <br>
</div>
<blockquote type="cite"
cite="mid:a5133c13-1458-28d1-8631-788a63cecdb4@pobox.com"
style="margin:0 0 0 .8ex; border-left:2px #729fcf
solid;padding-left:1ex">
<div>
<meta http-equiv="Content-Type" content="text/html;
charset=UTF-8">
</div>
<div class="moz-cite-prefix">On 06/12/2022 17:41, Curtis
Maurand via Pdns-users wrote:<br>
</div>
<div> <br>
</div>
<blockquote type="cite"
cite="mid:34a6583a-f238-9723-5fe7-4f268ab043e3@maurand.com"
style="margin:0 0 0 .8ex; border-left:2px #729fcf
solid;padding-left:1ex">
<div><br>
<font face="Helvetica, Arial, sans-serif">You can use
either xyonet.com or cybernexus.net</font></div>
</blockquote>
<p>And the pdns-auth server which you are referring to is
ns1.xyonet.com or ns2.xyonet.com? Or is it neither of
these, and is a hidden primary?</p>
<p>FYI, ns2.xyonet.com is not responding at the moment. Also,
ns1 is running PowerDNS Authoritative Server 4.4.1, which is
end-of-life, so you ought to look at upgrading it. See <a
class="moz-txt-link-freetext"
href="https://repo.powerdns.com/" moz-do-not-send="true">https://repo.powerdns.com/</a><br>
</p>
<p><br>
</p>
</blockquote>
<div> <br>
</div>
<pre><div>_______________________________________________
</div></pre>
<pre><div>Pdns-users mailing list
</div></pre>
<pre><div><a href="mailto:Pdns-users@mailman.powerdns.com" moz-do-not-send="true" class="moz-txt-link-freetext">Pdns-users@mailman.powerdns.com</a>
</div></pre>
<pre><div><a href="https://mailman.powerdns.com/mailman/listinfo/pdns-users" moz-do-not-send="true" class="moz-txt-link-freetext">https://mailman.powerdns.com/mailman/listinfo/pdns-users</a>
</div></pre>
</blockquote>
<div><br>
</div>
<div><span></span></div>
<br>
<fieldset class="moz-mime-attachment-header"></fieldset>
<pre class="moz-quote-pre" wrap="">_______________________________________________
Pdns-users mailing list
<a class="moz-txt-link-abbreviated" href="mailto:Pdns-users@mailman.powerdns.com">Pdns-users@mailman.powerdns.com</a>
<a class="moz-txt-link-freetext" href="https://mailman.powerdns.com/mailman/listinfo/pdns-users">https://mailman.powerdns.com/mailman/listinfo/pdns-users</a>
</pre>
</blockquote>
<br>
<pre class="moz-signature" cols="72">--
Curtis
<a class="moz-txt-link-freetext" href="https://curtis.maurand.com">https://curtis.maurand.com</a></pre>
</body>
</html>