Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

rooted-hints

Status
Not open for further replies.

sgscit

Technical User
Nov 18, 2002
134
AU
Hi All,

Can someone please illuminate me to the world of root-hints?

I have a root server for my network, 3 secondary distributed servers and 1 cache server.

Problem is, my cache server can't seem to see root hints.

If I remove my forwarders, 1 to my ISP DNS and 1 to my internal root server, I am unable to resolve names. I thought that was the idea of the root hints though? To enable you not to use forwarders?

How the cache server is setup:
properties:
No forward lookup Zones
Reverse lookup zone for 192.168.1.x installed
>Interfaces - all ip addresses (192.168.1.40)
>Forwarders - enable forwarders ticked.
- DNS Servers in order of appearance
139.130.4.4 (uneeda.telstra.net - ISP DNS)
192.168.1.253 (internal . server)
- DO NOT USE RECURSION is not ticked
>Advanced - using default settings
>Root-Hints - are NOT greyed out and I have added my local
DNS root server to the list 192.168.1.253
sthgrampians.vic.gov.au
>Logging - nothing selected
>Monitoring - Both simple and recursive testing passes.

One thing that may be an issue is that when I set up this network I did not know to set up a different name internally to what Joe Public sees on the outside of the firewall.
So for us to see our I had to add an entry to the DNS for to the host on the Internet.

Something else that is occurring is that the cache server is jamming up occasionally and I have to clear the cache and restart the DNS service to get it running again.

Any help would be greatly appreciated [smile]

Cheers,

Pete
[morning]
 
Just a side note, all the internal DNS server on my network are W2k.

Cheers
Pete
[morning]
 

Do you have a firewall??

Cheers

Henrik Morsing
Certified AIX 4.3 Systems Administration
& p690 Technical Support
 
Yes. A watchguard 700.

Do you think it is not forwarding on DNS requests?

I'm not a firewall person, how do I check?

Cheers,

Pete
[morning]
 

From your first post it looks like you're not using BIND, so I can't really help you.
You might need to tell your DNS server to query from port 53 instead of some random port.

Cheers

Henrik Morsing
Certified AIX 4.3 Systems Administration
& p690 Technical Support
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top