[Pdns-users] anual AXFR works, automatic does not (txt-version)

LikeFiction info at likefiction.com
Fri Aug 6 13:10:14 UTC 2010


I forgot to CC the list, here you find my latest answer to Stefan. It 
still seems the configuration is OK, but that the PowerDNS master does 
not start to notify my slaves on startup of new domains.

Domain: X.63.215.95.in-addr.arpa

I'm quite sure those settings are correct. I present the dig here:

; <<>> DiG 9.6-ESV-R1 <<>> @ns1.sologigabit.com ns 63.215.95.in-addr.arpa
; (1 server found)
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 41825
;; flags: qr aa rd; QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 0
;; WARNING: recursion requested but not available

;63.215.95.in-addr.arpa.                IN      NS

63.215.95.in-addr.arpa. 86400   IN      NS      ns1.sologigabit.com.
63.215.95.in-addr.arpa. 86400   IN      NS      ns2.sologigabit.com.

;; Query time: 1 msec
;; WHEN: Thu Aug  5 17:53:58 2010
;; MSG SIZE  rcvd: 91



With kind regards / Met vriendelijke groet,

Pierre van den Oord

Kleyn Proffijtlaan 49
2343 DB Oegstgeest
The Netherlands

T +31 (0)85 7850699 (Mo-Fr 10-17, GMT +1)
T +31 (0)6 12469791 (Mobile)
M info at LikeFiction.com
W www.LikeFiction.com
Please include the original message when you reply!

Op 5-8-2010 17:49, Stefan Schmidt schreef:
> On Thu, Aug 05, 2010 at 05:17:03PM +0200, LikeFiction wrote:
>> Hi Stefan,
> Hey erm LikeFiction, ;)
> I also need to know the domain name which you configured on your master
> server.
> But you can just check it yourself:
> The name of the nameserver that corresponds to the IP of your master
> nameserver in the supermasters table needs to be one of the names of
> nameservers you specified as nameservers for the domain on the master server.
> Hence a dig @<masterip>  ns domain.tld should give you the same name you
> specified in the supermasters table in one of the NS records.
> 	Stefan
>> Thanks for your reply.
>> The IP addresses are correct in my post, you can dig them both. The
>> nameservers are ns1.solo**gigabit.com and ns2.solo**gigabit.com,
>> please remove the **.
>> The NS records of the domains do include the ns2 server. Also,
>> manual notification is working fine. I don't know why powerDNS, on a
>> fresh start, does not try to AXFR zones to the slave. Do I have to
>> wait for TTL value? I would not expect that.
>> I hope you can dig the nameserver, you will find is list correctly
>> all domains. See for example this /24 subnet for PTR records:
>> webserver:/var/www/sologigabit.com/web/poweradmin# dig -x
>> webserver:/var/www/sologigabit.com/web/poweradmin# dig -x
>> @ns1.sologigabit.com
>> ;<<>>  DiG 9.6-ESV-R1<<>>  -x @ns1.solo**gigabit.com
>> ;; global options: +cmd
>> ;; Got answer:
>> ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 12733
>> ;; flags: qr aa rd; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 0
>> ;; WARNING: recursion requested but not available
>> ;    IN      PTR
>> 86400 IN    PTR     customerpanel.es.
>> ;; Query time: 0 msec
>> ;; SERVER:
>> ;; WHEN: Thu Aug  5 17:14:52 2010
>> ;; MSG SIZE  rcvd: 74
>> On NS2, no record is coming back, as the domain is not transferred
>> by PowerDNS.
>> With kind regards / Met vriendelijke groet,
>> Pierre van den Oord
>> LikeFiction
>> Kleyn Proffijtlaan 49
>> 2343 DB Oegstgeest
>> The Netherlands
>> T +31 (0)85 7850699 (Mo-Fr 10-17, GMT +1)
>> T +31 (0)6 12469791 (Mobile)
>> M info at LikeFiction.com
>> W www.LikeFiction.com
>> ---------------------------------------------------
>> Please include the original message when you reply!
>> ---------------------------------------------------
>> Op 5-8-2010 16:55, Stefan Schmidt schreef:
>>> On Thu, Aug 05, 2010 at 03:55:24PM +0200, LikeFiction wrote:
>>>> and one row on supermasters table on slave:
>>>> ip:
>>>> nameserver: ns2.xxxxxxxx.com (refers to slave itself)
>>> Please read section 13.2.1. of
>>> http://doc.powerdns.com/slave.html#SUPERMASTER
>>> very slowly and carefully.
>>> I would suspect that your problem is in the third bulletin point
>>> "The set of NS records for the domain, as retrieved by the slave from the
>>> supermaster, must include the name that goes with the IP address in the
>>> supermaster table"
>>> Yes, it should work right after restart of the master server.
>>> I would not go so far as to say that it usually does work right after
>>> configuration as many people struggle with exactly that point. ;)
>>> As always with DNS, not giving out the actual domain name prevents us from
>>> looking at the actual data and hinting you at possible typos or delegation
>>> problems.
>>> 	Stefan
>> !DSPAM:4c5ad60e40311804284693!

More information about the Pdns-users mailing list