[Pdns-users] iprange is hitting my dns servers

steffannoord at gmail.com steffannoord at gmail.com
Mon Jun 8 18:12:05 UTC 2020


Hello,

 

Im rusiing 4.1.13-1pdns.el7

I just noticed a lot of these lines

Jun  8 19:55:08 ns2 pdns_server: Exception building answer packet for
KS-DC-01.ksprofiel.nl/DS (All data was not consumed) sending out servfail

Jun  8 19:55:08 ns2 pdns_server: Exception building answer packet for
KS-DC-01.ksprofiel.nl/AAAA (All data was not consumed) sending out servfail

Jun  8 19:55:08 ns2 pdns_server: Exception building answer packet for
KS-DC-01.ksprofiel.nl/A (All data was not consumed) sending out servfail

Jun  8 19:55:10 ns2 pdns_server: Exception building answer packet for
KS-DC-01.ksprofiel.nl/A (All data was not consumed) sending out servfail

Jun  8 19:55:10 ns2 pdns_server: Exception building answer packet for
KS-DC-01.ksprofiel.nl/DS (All data was not consumed) sending out servfail

Jun  8 19:55:10 ns2 pdns_server: Exception building answer packet for
KS-DC-01.ksprofiel.nl/DS (All data was not consumed) sending out servfail

Jun  8 19:55:10 ns2 pdns_server: Exception building answer packet for
KS-DC-01.ksprofiel.nl/AAAA (All data was not consumed) sending out servfail

Jun  8 19:55:10 ns2 pdns_server: Exception building answer packet for
KS-DC-01.ksprofiel.nl/A (All data was not consumed) sending out servfail

Jun  8 19:55:10 ns2 pdns_server: Exception building answer packet for
KS-DC-01.ksprofiel.nl/DS (All data was not consumed) sending out servfail

Jun  8 19:55:10 ns2 pdns_server: Exception building answer packet for
KS-DC-01.ksprofiel.nl/AAAA (All data was not consumed) sending out servfail

 

When debugging i see one iprange over and over and over again.

 

 

Jun  8 20:10:24 ns3 pdns_server: Remote 195.121.82.135 wants
'KS-DC-01.ksprofiel.nl|A', do = 1, bufsize = 1232: packetcache MISS

Jun  8 20:10:24 ns3 pdns_server: Remote 195.121.82.139 wants
'KS-DC-01.ksprofiel.nl|AAAA', do = 1, bufsize = 1232: packetcache MISS

Jun  8 20:10:24 ns3 pdns_server: Remote 195.121.82.111 wants
'KS-DC-01.ksprofiel.nl|AAAA', do = 1, bufsize = 1232: packetcache MISS

Jun  8 20:10:24 ns3 pdns_server: Remote 195.121.82.103 wants
'KS-DC-01.ksprofiel.nl|A', do = 1, bufsize = 1232: packetcache MISS

Jun  8 20:10:27 ns3 pdns_server: Remote 195.121.82.111 wants
'KS-DC-01.ksprofiel.nl|DS', do = 1, bufsize = 1232: packetcache MISS

Jun  8 20:10:27 ns3 pdns_server: Remote 195.121.82.111 wants
'KS-DC-01.ksprofiel.nl|A', do = 1, bufsize = 1232: packetcache MISS

 

Soemthimes it is a packetcache HIT (another domain)

 

Is this some kind of hakking attempt or normal ?

 

 

Met vriendelijke groet,

Steffan Noord 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.powerdns.com/pipermail/pdns-users/attachments/20200608/f8e8f857/attachment.htm>


More information about the Pdns-users mailing list