Re: DNS Bogus Packet
- From: Qafyg <qafyg@xxxxxxxxxxx>
- Date: Wed, 18 Jul 2007 10:39:47 -0700
On 16 juil, 23:47, "Ace Fekay [MVP]" <PleaseAs...@xxxxxxxxxxxxxx>
wrote:
Innews:1184601213.819815.133130@xxxxxxxxxxxxxxxxxxxxxxxxxxx,Qafyg<qa...@xxxxxxxxxxx> typed:
Thanks for taking the time to answer Ace,
I should have included more details in my original post.
The DNS server is a primary public DNS server (Isolated from our
internal DNS architecture). It's not hosting any AD integrated zones.
There are no fowarders configured and recursion is disabled.
Checkbox for Cache pollution is checked.
All the name of the zones appears to be valid, and request that seems
to generate the error are made for very kosher host and domain names.
Thanks for any inputs!
Martin
Martin,
COnfigure a forwarder. This way you can offload outside resolution to the
forwarder. Disabling recursion (under the Forwarders tab) will just disable
the Root HInts. If this is the case, I am surprised you are getting internet
resolution. Maybe that might be why the 'bogus' errors. Try 4.2.2.2 for
forwarder and post back.
Ace- Masquer le texte des messages précédents -
- Afficher le texte des messages précédents -
I've re-read my orignal message and realized it's not very clear.
Our DNS architecture is designed this way:
We have DCs that acts as internal DNS servers and have fowarders to
the ISPs DNS servers. They are hosting a business.internal AD
integrated zone.
We also have 2 servers in the DMZ that acts as external DNS servers.
They are hosting a business.com zone (Mainly for Websites, FTP, etc.)
If our users try to resolves some internet names, including our own
websites, etc. they go thru our ISP.
The server that is generating the errors mentionned in my original
post is the primary external DNS server when it answers queries from
the internet. Since it's only sitting there to answers queries about
his zones, we haven't enabled recursion. Everything is working fine
except it generates this event every 10 minutes or so.
Martin
.
- Follow-Ups:
- Re: DNS Bogus Packet
- From: Herb Martin
- Re: DNS Bogus Packet
- From: Ace Fekay [MVP]
- Re: DNS Bogus Packet
- References:
- DNS Bogus Packet
- From: Qafyg
- Re: DNS Bogus Packet
- From: Ace Fekay [MVP]
- Re: DNS Bogus Packet
- From: Qafyg
- Re: DNS Bogus Packet
- From: Ace Fekay [MVP]
- DNS Bogus Packet
- Prev by Date: Shutdown Permission
- Next by Date: Re: Changing Corporate subnet address
- Previous by thread: Re: DNS Bogus Packet
- Next by thread: Re: DNS Bogus Packet
- Index(es):
Relevant Pages
|