Information about DNS and network

Latest Posts

MRW when I set up my own caching server, configure my home router to use it, and wife's Android still hits Time Warner Cable's landing page

WTF?

The router is set to user the caching server and then roll over to OpenDNS. Her phone showed 192.168.1.1 (home router) as the primary and 8.8.8.8 (Google) as the secondary. This was under DHCP settings. I had to switch it to static IP to be able to change the IP settings, but I got it to receive NXDOMAIN again that way.

But how could TWC’s DNS ever still come into the equation???

EDIT: I noticed my lookup server is down. That’s another matter, and looking into it. But still don’t see how that would allow TWC’s stuff to seep in.

submitted by fongaboo
[link] [3 comments]

Powered by WPeMatico

Unbound – authoritative answers from NSD on LAN, but recursion-only on WAN?

Is there a way to get the same instance of Unbound to pass queries for a local zone (eg, internal.domain.tld) to an authoritative server (in my case NSD running on the same host) on one interface/subnet, but not on another? I suppose this is a split horizon scenario (which I’ve read Unbound doesn’t really do), except in my case I want LAN-side hosts to be able to resolve internal addresses, but WAN-side hosts should just get NXDOMAIN – I don’t care about serving different IPs to different subnets.

I’ve read the Unbound man page top to bottom, but I’m brand new to Unbound, pretty new to DNS in general, and also I’m just kinda dumb.

If the only way is to run two instances of Unbound, then so be it, but I’d really like to avoid this for simplicity.

submitted by phishpin
[link] [2 comments]

Powered by WPeMatico

Can't get Unbound to answer on outside IP (x-post from /r/freebsd)

Have a FreeBSD 10 machine. Have two outside IPs bound to it. First IP has NSD running as an authoritative server. THis is specified specifically in the interface entry of nsd.conf.

Trying to run caching/recursive nameserver with unbound on the second IP. I specified the following entries in unbound.conf:

interface: 127.0.0.1 interface: <Second IP> 

I followed the tutorial at https://calomel.org/unbound_dns.html. I added lines for unbound-control. But other than that, and the extra interface lines, its as specified in the tutorial… Oh, also the locations are modified from /var/unbound/etc/ to /var/unbound/.

I can get it to resolve when I run nslookup and set the server to 127.0.0.1, but not when I set it to the second IP.

I’m wondering if something else is floating around on 127.0.0.1 port 53? Because when I run unbound-control dump_requestlist, I get an empty list. I would think I would see the requests I made successfully on 127.0.0.1.

BTW, I have this in IPFW:

allow udp from any to any dst-port 53 in 

Any ideas why I can’t get answers on the second IP?

submitted by fongaboo
[link] [4 comments]

Powered by WPeMatico

Tracing DNS path from the bottom up?

My ISP informs me we are still hitting their old DNS servers which are going to be shut down soon. I’ve set our firewall, primary and secondary DNS servers to point to the new DNS ip’s. I did this using the Forwarders tab. All machines on my network should be pointing to those internal DNS servers. I can’t think of or find any other places the old DNS ip’s might be being referenced (I didn’t set this up and my DNS knowledge is not that deep).

Where else might those ip’s be configured? And is there any way to trace the hops that a DNS request is taking from my pc so I can track it down that way?

submitted by woodycanuck
[link] [5 comments]

Powered by WPeMatico

Need some DNS help.

For about 3 months now, I’ve had the constant problem of the default 127.0.0.1 DNS server not working. No sites load, but when I put in ip’s they do. However, this is not a practical solution so I did some reading around and changed the DNS server to 8.8.8.8 (Google Public DNS). However, it resets around every 1-2 minutes and I have to constantly input the numbers again and it gets extremely irritating. Is the any way I can make the 127.0.0.1 server work again so I can not have to input the numbers constantly throughout the day?

submitted by Mysterymason
[link] [16 comments]

Powered by WPeMatico