[Pdns-users] Wildcard A Record Question

Gabriel J Marais forums at 64bit.co.za
Mon Jul 28 18:47:08 UTC 2008


Resolved : Seems like the missing SOA and NS records were needed to
successfully do *wildcards in PDNS.

 

 

Thanks !

 

Gabriel

 

From: Ton van Rosmalen [mailto:ton at netbase.nl] 
Sent: Sunday, July 27, 2008 10:22 PM
To: forums at 64bit.co.za
Cc: PDNS user-list
Subject: Re: [Pdns-users] Wildcard A Record Question

 

Hi Gabriel,

I'm still on-line as well.

Yep, gmysql-backend.

Ton

Gabriel J Marais schreef: 

Hi Ton,
 
Me again :)
 
I'm so excited about this now... I have been struggling for ever and a day
now with getting this to work... Out of curiosity, are you also using a
MySQL database ?
 
 
Regards
 
Gabriel
 
-----Original Message-----
From: Ton van Rosmalen [mailto:ton at netbase.nl] 
Sent: Sunday, July 27, 2008 8:37 PM
To: forums at 64bit.co.za
Subject: Re: [Pdns-users] Wildcard A Record Question
 
Hi again,
 
Gabriel J marais schreef:
  

Hi Guys
 
I have been trying to do a Wildcard "A" record for the past couple of days
with little success. It seems like the query takes the "*" not as a
wildcard, but an actual character, like a normal letter or numeric...
 
I also have wildcards=yes configured in my config file.
 
 
Can you perhaps help ? Maybe I'm just missing something stupid...
 
I use PowerDNS 2.9.21 with a MySQL Database
 
I am trying to setup a RBL-type database which would have several wildcard
entries. In my current database I have the following configured :-
 
mysql> select * from domains;
 
    

+----+------------------+--------+------------+--------+-----------------+--
  

-------+
| id | name             | master | last_check | type   | notified_serial |
account |
 
    

+----+------------------+--------+------------+--------+-----------------+--
  

-------+
|  1 | test.xxxxx.xx.xx | NULL   |       NULL | NATIVE |            NULL |
NULL    |
|  2 | duhl.xxxxx.xx.xx | NULL   |       NULL | NATIVE |            NULL |
NULL    |
 
    

+----+------------------+--------+------------+--------+-----------------+--
  

-------+
 
mysql> select * from records;
 
    

+----+-----------+-----------------------------+------+---------------------
  

-+-------+---------------------+------+
| id | domain_id | name                        | type | content
| ttl   | dateadded           | prio |
 
    

+----+-----------+-----------------------------+------+---------------------
  

-+-------+---------------------+------+
|  1 |         1 | 1.0.0.127.test.xxxxx.xx.xx  | A    | 127.0.0.1
| 84600 | 2008-07-14 15:29:00 |      |
|  2 |         1 | 1.0.0.127.test.xxxxx.xx.xx  | TXT  | "Test Zone 1"
|  NULL | 0000-00-00 00:00:00 |      |
|  3 |         2 | 2.0.0.127.duhl.xxxxx.xx.xx  | A    | 127.0.0.2
|  NULL | 0000-00-00 00:00:00 |      |
|  4 |         2 | 2.0.0.127.duhl.xxxxx.xx.xx  | TXT  | "Dynamic IP
    

Address"
  

| 86400 | 2008-07-15 08:53:00 |      |
|  5 |         2 | *.0.245.41.duhl.xxxxx.xx.xx | A    | 127.0.0.2
| 86400 | 2008-07-15 09:00:00 |      |
 
    

+----+-----------+-----------------------------+------+---------------------
  

-+-------+---------------------+------+
 
 
 
  
    

I setup an RBL zone under a subdomain and for me it works. The primary 
difference I see is the SOA and NS-records which are not displayed above.
Are these in the zone?
 
Try my test-zone by issuing the following dig:
dig @ns1.webreus.net 2.5.168.192.rbl.webreus.net any
 
Records for the zone rbl.webreus.net have been set-up as follows:
rbl.webreus.net         SOA     <regular SOA fields>
rbl.webreus.net         NS     <ns records>
*.168.192.rbl.webreus.net     A     127.0.0.2    
*.168.192.rbl.webreus.net     TXT     "blocked by rbl.webreus.net"
*.16.172.rbl.webreus.net     A     127.0.0.2    
*.16.172.rbl.webreus.net     TXT     "blocked by rbl.webreus.net"
 
Hope this helps.
 
Ton
 
---------------------------------------------------- 
IONLINE In-Line Mail Scanner
---------------------------------------------------- 
This message has been scanned for viruses and
dangerous content by the IONLINE In-Line Mail
Scanners and is believed to be clean. For more 
information, please contact support at ionline.co.za
---------------------------------------------------- 
 
 
__________ Information from ESET Smart Security, version of virus signature
database 3289 (20080722) __________
 
The message was checked by ESET Smart Security.
 
http://www.eset.com
 
 
 
__________ Information from ESET Smart Security, version of virus signature
database 3289 (20080722) __________
 
The message was checked by ESET Smart Security.
 
http://www.eset.com
 
 
  



__________ Information from ESET Smart Security, version of virus signature
database 3289 (20080722) __________

The message was checked by ESET Smart Security.

http://www.eset.com


-- 
This message has been scanned for viruses and 
dangerous content by  <http://www.mailscanner.info/> MailScanner, and is 
believed to be clean. 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.powerdns.com/pipermail/pdns-users/attachments/20080728/20ffb346/attachment-0001.html>


More information about the Pdns-users mailing list