Yes, all other TLD's as far as I can tell are resolving fine when this happens but after a few days of operating normally, the DNS will simply not resolve any site with a .GOV TLD. The client figured out that if it happens, they can just reboot and it fixes the problem. This does not assist in understanding what the problem is, however. I originally was told by the client that the firewall (ISA 2000) was blocking access but I was never able to find any logs that indicated this was true.
I was finally called when it occurred after hours and I was immediately able to determine the problem was with DNS. There are no errors being logged and I can figure out no reason for this to be occurring. If I restart the DNS service, all is fine for a few days and then we are back to square one.
I have turned on DNS Debug Logging and I am going to hold my breath that this log file may capture some vital data so I can put my finger directly on the source of the problem. I am including the first resolution logged to the main site the office visits regularly as an example.
Question 1: What would be the best items to log in the debugging to be able to track the specific problem and what would I look for?
Question 2: Anyone have a specific answer to solve this problem without having to go through the debug effort?
This is a SBS2003. There have been no DNS changes done since the original install. I will split points if necessary for good info.
Thank You in Advance for your insight...
Gregory A. Miller
a.k.a. Technodweeb
Example of a working query to "
http://pacer.psc.uscourts.gov/":
16:22:22 DA0 PACKET UDP Snd 209.97.207.48 3a1c Q [0000 NOERROR] (6)lsmns1(4)gtwy(8)uscourt
s(3)gov(0)
UDP question info at 01BEA360
Socket = 408
Remote addr 209.97.207.48, port 53
Time Query=0, Queued=0, Expire=0
Buf length = 0x0500 (1280)
Msg length = 0x0035 (53)
Message:
XID 0x3a1c
Flags 0x0000
QR 0 (QUESTION)
OPCODE 0 (QUERY)
AA 0
TC 0
RD 0
RA 0
Z 0
RCODE 0 (NOERROR)
QCOUNT 1
ACOUNT 0
NSCOUNT 0
ARCOUNT 1
QUESTION SECTION:
Offset = 0x000c, RR count = 0
Name "(6)lsmns1(4)gtwy(8)uscour
ts(3)gov(0
)"
QTYPE A (1)
QCLASS 1
ANSWER SECTION:
empty
AUTHORITY SECTION:
empty
ADDITIONAL SECTION:
Offset = 0x002a, RR count = 0
Name "(0)"
TYPE OPT (41)
CLASS 1280
TTL 0
DLEN 0
DATA (none)
16:22:22 12C8 PACKET UDP Snd 207.41.14.62 3a1c Q [0000 NOERROR] (6)lsmns1(4)gtwy(8)uscourt
s(3)gov(0)
UDP question info at 01BEA360
Socket = 408
Remote addr 207.41.14.62, port 53
Time Query=0, Queued=0, Expire=0
Buf length = 0x0500 (1280)
Msg length = 0x0035 (53)
Message:
XID 0x3a1c
Flags 0x0000
QR 0 (QUESTION)
OPCODE 0 (QUERY)
AA 0
TC 0
RD 0
RA 0
Z 0
RCODE 0 (NOERROR)
QCOUNT 1
ACOUNT 0
NSCOUNT 0
ARCOUNT 1
QUESTION SECTION:
Offset = 0x000c, RR count = 0
Name "(6)lsmns1(4)gtwy(8)uscour
ts(3)gov(0
)"
QTYPE A (1)
QCLASS 1
ANSWER SECTION:
empty
AUTHORITY SECTION:
empty
ADDITIONAL SECTION:
Offset = 0x002a, RR count = 0
Name "(0)"
TYPE OPT (41)
CLASS 1280
TTL 0
DLEN 0
DATA (none)
16:22:22 12C8 PACKET UDP Snd 207.41.18.68 0224 Q [0000 NOERROR] (5)pacer(3)psc(8)uscourts(
3)gov(0)
UDP question info at 01BBAC90
Socket = 408
Remote addr 207.41.18.68, port 53
Time Query=0, Queued=0, Expire=0
Buf length = 0x0500 (1280)
Msg length = 0x0033 (51)
Message:
XID 0x0224
Flags 0x0000
QR 0 (QUESTION)
OPCODE 0 (QUERY)
AA 0
TC 0
RD 0
RA 0
Z 0
RCODE 0 (NOERROR)
QCOUNT 1
ACOUNT 0
NSCOUNT 0
ARCOUNT 1
QUESTION SECTION:
Offset = 0x000c, RR count = 0
Name "(5)pacer(3)psc(8)uscourts
(3)gov(0)"
QTYPE A (1)
QCLASS 1
ANSWER SECTION:
empty
AUTHORITY SECTION:
empty
ADDITIONAL SECTION:
Offset = 0x0028, RR count = 0
Name "(0)"
TYPE OPT (41)
CLASS 1280
TTL 0
DLEN 0
DATA (none)
16:22:22 12C8 PACKET UDP Snd 192.168.16.2 a7bd R Q [0084 A NOERROR] (5)pacer(3)psc(8)uscourts(
3)gov(0)
UDP response info at 007E7AD0
Socket = 392
Remote addr 192.168.16.2, port 44152
Time Query=453506, Queued=0, Expire=0
Buf length = 0x0500 (1280)
Msg length = 0x0087 (135)
Message:
XID 0xa7bd
Flags 0x8400
QR 1 (RESPONSE)
OPCODE 0 (QUERY)
AA 1
TC 0
RD 0
RA 0
Z 0
RCODE 0 (NOERROR)
QCOUNT 1
ACOUNT 1
NSCOUNT 2
ARCOUNT 2
QUESTION SECTION:
Offset = 0x000c, RR count = 0
Name "(5)pacer(3)psc(8)uscourts
(3)gov(0)"
QTYPE A (1)
QCLASS 1
ANSWER SECTION:
Offset = 0x0028, RR count = 0
Name "[C00C](5)pacer(3)psc(8)us
courts(3)g
ov(0)"
TYPE A (1)
CLASS 1
TTL 3600
DLEN 4
DATA 207.41.15.138
AUTHORITY SECTION:
Offset = 0x0038, RR count = 0
Name "[C016](8)uscourts(3)gov(0
)"
TYPE NS (2)
CLASS 1
TTL 3600
DLEN 14
DATA (6)resns1(4)gtwy[C016](8)u
scourts(3)
gov(0)
Offset = 0x0052, RR count = 1
Name "[C016](8)uscourts(3)gov(0
)"
TYPE NS (2)
CLASS 1
TTL 3600
DLEN 9
DATA (6)lsmns1[C04B](4)gtwy[C01
6](8)uscou
rts(3)gov(
0)
ADDITIONAL SECTION:
Offset = 0x0067, RR count = 0
Name "[C05E](6)lsmns1[C04B](4)g
twy[C016](
8)uscourts
(3)gov(0)"
TYPE A (1)
CLASS 1
TTL 3600
DLEN 4
DATA 207.41.18.68
Offset = 0x0077, RR count = 1
Name "[C044](6)resns1(4)gtwy[C0
16](8)usco
urts(3)gov
(0)"
TYPE A (1)
CLASS 1
TTL 3600
DLEN 4
DATA 207.41.14.62