[19812] in North American Network Operators' Group
RE: UDP packet/DNS server
daemon@ATHENA.MIT.EDU (Tatsuya Kawasaki)
Mon Sep 28 01:48:20 1998
Date: Mon, 28 Sep 1998 14:40:04 +0900 (JST)
From: Tatsuya Kawasaki <tatsuya@giganet.net>
To: Raymond Forbes <rforbes@microsoft.com>
cc: nanog ml <nanog@merit.edu>
In-Reply-To: <3C3175FCC945D211B65100805F15808901185F59@RED-MSG-07>
Raymond,
Thnx for a quick reply.
I checked with the person in the charge of the host.
He could not telnet 53 my host. So I believe that is the problem
Since they did not like to have zone transfer.
I create to record to pass "NS" to that host via tying
xyz.com. IN NS that.host
*.xyz.com In NS that.host
and it works fine when I type www.xyz.com,which give me the
A record but ... in the daemonlog, I see
Sep 28 14:34:06 auth2 named[8958]: Ready to answer queries.
Sep 28 14:34:16 auth2 named[8958]: bad referral (xyz.com !<
*.xyz.com)
Sep 28 14:34:16 auth2 named[8958]: bad referral (xyz.com !<
*.xyz.com)
Any suggestion? what did I do?
$B$+$o$5$-(B
TK3197
= = = = = =
Business Network Telecom (BNT)
$B%S%8%M%9%M%C%H%o!<%/%F%l%3%`3t<02q<R(B
$B")(B111-0053$B!!El5~ETBfEl6h@uAp66(B3-8-5
31$B;35~%S%k(B6$B3,(B
TEL 03-5687-3945 FAX 03-5687-6009
http://www.giganet.net
On Sun, 27 Sep 1998, Raymond Forbes wrote:
> It is possible that the router or the firewall is not allowing connections,
> that would be the only way to explain what you are seeing.
>
> ray
>
> > ----------
> > From: Tatsuya Kawasaki[SMTP:tatsuya@giganet.net]
> > Sent: Sunday, September 27, 1998 9:33 PM
> > To: Raymond Forbes
> > Subject: RE: UDP packet/DNS server
> >
> > I have tried to get zone transfer via dig. it failed.
> > None get back. I have looked at their named.conf.
> > I did not see any restriction on it.
> >
> > I could not receive zone transfer from a host.
> > So if someone log in the the host telnet 53 to my host.
> > If telnet is sccuessful then zone transfer is possible.
> > But telent from my host to the host, and telent failed does not
> > really means anything?
> >
> > TIA
> >
> > Tatsuya
> >
> >
> >
> >
> >
> > ????
> > TK3197
> >
> > = = = = = =
> > Business Network Telecom (BNT)
> > ??????????????????
> > ?111-0053?"??s'??????3-8-5
> > 31????6?
> > TEL 03-5687-3945 FAX 03-5687-6009
> > http://www.giganet.net
> >
> > On Sun, 27 Sep 1998, Raymond Forbes wrote:
> >
> > > zone transfers are not done by UDP. They are TCP. A couple of ways you
> > can
> > > test is to telnet to port 53 and see if you make a connection. Also, if
> > you
> > > do nslookup and then ls domain name this is equivilant to doing a zone
> > > transfer.
> > >
> > > hope this helps.
> > >
> > > ray
> > >
> > > > ----------
> > > > From: Tatsuya Kawasaki[SMTP:tatsuya@giganet.net]
> > > > Sent: Sunday, September 27, 1998 8:44 PM
> > > > To: nanog ml
> > > > Subject: UDP packet/DNS server
> > > >
> > > > Hello Nanog,
> > > >
> > > > I am trying get zone trasfer from a host, but it seems that because of
> > > > firewals?, I can not get any record.
> > > > They acknowelged that there is a host behind the firewalls but they
> > claim
> > > > it should not affect it. (I don't believe it.)
> > > > But I don't know how to check/prove that if certain host can
> > > > receive/send an UDP packet.
> > > >
> > > >
> > > > TIA,
> > > >
> > > > Tatsuya
> > > >
> > > >
> > > > ????
> > > > TK3197
> > > >
> > > > = = = = = =
> > > > Business Network Telecom (BNT)
> > > > ??????????????????
> > > > ?111-0053?"??s'??????3-8-5
> > > > 31????6?
> > > > TEL 03-5687-3945 FAX 03-5687-6009
> > > > http://www.giganet.net
> > > >
> > >
> >
>