[98734] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Do I or RR need dns clue?

daemon@ATHENA.MIT.EDU (Valdis.Kletnieks@vt.edu)
Thu Aug 16 13:30:18 2007

To: Tuc at T-B-O-H <ml@t-b-o-h.net>
Cc: nanog@nanog.org
In-Reply-To: Your message of "Thu, 16 Aug 2007 10:40:49 EDT."
             <200708161440.l7GEen4h078623@vjofn.tucs-beachin-obx-house.com>
From: Valdis.Kletnieks@vt.edu
Date: Thu, 16 Aug 2007 11:25:53 -0400
Errors-To: owner-nanog@merit.edu


--==_Exmh_1187277953_618P
Content-Type: text/plain; charset=us-ascii

On Thu, 16 Aug 2007 10:40:49 EDT, Tuc at T-B-O-H said:

> Mail to RR users is getting refused due to PTR issues. I contacted
> RR and explained that yea, one of our 2 DNS servers for the
> IN-ADDR.ARPA is down, but the other is fine.  They said that 
> I should either get the DNS server back up (Which of course
> is already being worked on, was the minute it went down)
> or delete it from ARIN IN-ADDR.ARPA records.
> 
> Isn't the whole point of multiple DNS servers that if one is down
> the other can still answer queries? Or am I missing something
> here???

Depends exactly what your "down" server is doing.  If it's totally not
answering, the resolver at RR should silently fall back and try the other one.

It gets more interesting if your "down" server is still answering queries,
particlylarly if it's giving out "I never heard of it" answers with the
authoritative bit set because it's blown out a zone.  In that case, the RR
resolver is within its rights to assume that your NS knows what it's talking
about and believing it.

--==_Exmh_1187277953_618P
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)
Comment: Exmh version 2.5 07/13/2001

iD8DBQFGxGyBcC3lWbTT17ARAkjNAKDeODoQI+555CnLhQXdb0cp9DOiCwCgqYFt
qIAhZv2fxU4KyyoJWXCjsu4=
=1DHX
-----END PGP SIGNATURE-----

--==_Exmh_1187277953_618P--


home help back first fref pref prev next nref lref last post