From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([208.92.234.80] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1RBRoT-0008Qw-CZ for garchives@archives.gentoo.org; Wed, 05 Oct 2011 13:47:09 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 03C7721C0EE; Wed, 5 Oct 2011 13:46:54 +0000 (UTC) Received: from mail-ey0-f181.google.com (mail-ey0-f181.google.com [209.85.215.181]) by pigeon.gentoo.org (Postfix) with ESMTP id 9DC7021C046 for ; Wed, 5 Oct 2011 13:45:56 +0000 (UTC) Received: by eyg5 with SMTP id 5so1901998eyg.40 for ; Wed, 05 Oct 2011 06:45:55 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=date:from:to:subject:message-id:in-reply-to:references:organization :x-mailer:mime-version:content-type:content-transfer-encoding; bh=loZhsQke71K0RPntE3nolUwxl/QtxrHZv2WGI8e1mYo=; b=qPumbg3WV1htcHqWTAHJJMveqrvS/2dw84w7JMjms2/IAW++0G3eEymHvw9Qw60qOz ERS3Lr3VvIn/BnlXPD05HdGzW/mJk6m4NndJYB9Em3TN0Gt6uSJHKkDZQTcsDImONXSS yHj5Ui0FThA8O6VhF0WhhjtnON8cxFd3IpFBg= Received: by 10.14.3.145 with SMTP id 17mr201758eeh.4.1317822355404; Wed, 05 Oct 2011 06:45:55 -0700 (PDT) Received: from rohan.example.com ([196.215.144.38]) by mx.google.com with ESMTPS id q50sm1219042eef.9.2011.10.05.06.45.53 (version=SSLv3 cipher=OTHER); Wed, 05 Oct 2011 06:45:54 -0700 (PDT) Date: Wed, 5 Oct 2011 15:45:49 +0200 From: Alan McKinnon To: gentoo-user@lists.gentoo.org Subject: Re: [gentoo-user] Re: SERVFAIL with bind; problems in named.conf? Message-ID: <20111005154549.42eef735@rohan.example.com> In-Reply-To: References: <20111005152749.5e5d90fc@rohan.example.com> Organization: Internet Solutions X-Mailer: Claws Mail 3.7.8 (GTK+ 2.24.4; x86_64-pc-linux-gnu) Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@lists.gentoo.org Reply-to: gentoo-user@lists.gentoo.org Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit X-Archives-Salt: X-Archives-Hash: 965bf2967a648abf8fd695bf77c4934b On Wed, 5 Oct 2011 09:38:01 -0400 Andrey Moshbear wrote: > No clue, as logging isn't yet enabled. However, chechzone says that > all is fine. Well that's your primary error right there. How can you run a daemon that isn't logging and consider that even halfway proper? Get some real logs from when bind loads the zone and I'll bet it'll tell you right away what the problem is checkzone != a full bind > > On 2011-10-05, Alan McKinnon wrote: > > On Wed, 5 Oct 2011 05:06:27 -0400 > > Andrey Moshbear wrote: > > > >> For bind, I have the following as named.conf: > >> > >> acl "xfer" { none; }; > >> > >> acl "trusted" { 127.0.0.0/8; ::1/128; }; > >> > >> options { > >> directory "/var/bind"; > >> pid-file "/var/run/named/named.pid"; > >> > >> listen-on-v6 { none; }; > >> listen-on port 53 { 127.0.0.1; 192.168.1.0/10; > >> EXTERNAL_IP; }; }; > >> > >> include "/etc/bind/rndc.key"; > >> controls { inet 127.0.0.1 port 953 allow { 127.0.0.1/32; ::1/128; } > >> keys { "rndc-key"; }; }; > >> > >> zone "." in { type hint; file "/var/bind/root.cache"; }; > >> > >> zone "localhost" IN { type master; file "pri/localhost.zone"; > >> notify no; }; > >> > >> zone "127.in-addr.arpa" IN { type master; file "pri/127.zone"; > >> notify no; }; > >> > >> zone "moshbear.net" IN { type master; file > >> "/var/bind/pri/moshbear.net.zone"; allow-query { any; }; > >> allow-transfer { xfer; }; }; > >> // end of dump > >> > >> The zone file does not have any errors. > >> > >> Any reasons as to why "dig @127.0.0.1 moshbear.net" returns > >> SERVFAIL? > > > > What result does bind write to log files when it loads that zone? > > > > SERVFAIL usually indicates something wrong with the zone and bind > > refuses to load it. > > > > > > > > > >> > >> -- > >> 001100 Andrey "m05hbear" Vul > >> 010010 > >> 100001 andrey dot vul at gmail > >> 110011 > >> > > > > > > > > -- > > Alan McKinnnon > > alan.mckinnon@gmail.com > > > > > -- Alan McKinnnon alan.mckinnon@gmail.com