[Pdns-users] Recursor v3.2 and v3.3 malformed answer in case of big response from authoritative

Thor Spruyt thor.spruyt at telenet.be
Tue Apr 12 23:27:26 UTC 2011


Bert,

Quick check is looking good ...

[thor at tns125 named]$ dig -t MX auinmeio.com.br @195.130.158.234
;; Truncated, retrying in TCP mode.

; <<>> DiG 9.3.6-P1-RedHat-9.3.6-4.P1.el5_4.2 <<>> -t MX auinmeio.com.br @195.130.158.234
;; global options:  printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 24511
;; flags: qr rd ra; QUERY: 1, ANSWER: 1569, AUTHORITY: 0, ADDITIONAL: 1353
;; Query time: 282 msec
;; SERVER: 195.130.158.234#53(195.130.158.234)
;; WHEN: Wed Apr 13 01:22:30 2011
;; MSG SIZE  rcvd: 65531

Apr 13 01:22:30 tns125 pdns_recursor[16024]: 1 [36] question for 'auinmeio.com.br.|MX' from 195.130.158.234
Apr 13 01:22:30 tns125 pdns_recursor[16024]: 1 [36] answer to question 'auinmeio.com.br.|MX': 19 answers, 0 additional, took 0 packets, 0 throttled, 0 timeouts, 0 tcp connections, rcode=0
Apr 13 01:22:30 tns125 pdns_recursor[16024]: 1 [37] TCP question for 'auinmeio.com.br.|MX' from 195.130.158.234
Apr 13 01:22:30 tns125 pdns_recursor[16024]: 1 [37] answer to question 'auinmeio.com.br.|MX': 1569 answers, 1353 additional, took 0 packets, 0 throttled, 0 timeouts, 0 tcp connections, rcode=0

Kind regards,
Thor.

----- Original Message -----
From: "bert hubert" <bert.hubert at netherlabs.nl>
To: "Thor Spruyt" <thor.spruyt at telenet.be>
Cc: pdns-users at mailman.powerdns.com
Sent: Tuesday, April 12, 2011 3:38:26 PM GMT +01:00 Amsterdam / Berlin / Bern / Rome / Stockholm / Vienna
Subject: Re: [Pdns-users] Recursor v3.2 and v3.3 malformed answer in case of big response from authoritative

On Mon, Apr 11, 2011 at 05:11:41PM +0200, bert hubert wrote:
> On Mon, Apr 11, 2011 at 04:53:16PM +0200, Thor Spruyt wrote:
> > Last week I discovered an issue with recursor v3.2.

Hi Thor,

Thanks! You've uncovered an interesting bug which was quite devious. It has
been solved in http://wiki.powerdns.com/trac/changeset/2150

The problem was that powerdns would indeed try to serve infinitely large
answers over TCP/IP, even though TCP/IP answers are still limited to 65KB.

However, since yesterday the domain auinmeio.com.br appears to have
developed its own problems, so it still does not resolve, but for a new
reason. It looks like it is just broken.

Can you verify using
http://svn.powerdns.com/snapshots/pdns-recursor-3.4-pre.tar.bz2 ?

	Bert



More information about the Pdns-users mailing list