• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 2590
  • Last Modified:

Add static entry to linux dns server

I have a bind9 dns server on Ubuntu 8.10. I want to add a static domain to the server for testing. The test domain we will say is company.com. This domain is external from the network i am in. I already have the local zone set up and working.

I am doing this because this company randomly has email fail to a certain domain. It works fine for weeks and the it just stops working and returns 550 host unknow company.com.  

What i want to do is add the mx records for company.com statically in the dns server for testing.  

This only started after these guys started trendmicro's IMHS service, if that helps. .

Thanks
0
bml104
Asked:
bml104
  • 3
  • 2
1 Solution
 
Hugh FraserConsultantCommented:
The basic IMHS service hosts inbound mail only through an MX record, so it wouldn't affect outbound mail. You need to check if you have this or their advanced service which checks outbound mail as well (I'm getting this from their web site). If it's the latter, they should be doing the resolving, not you.

Assuming you;re delivering outbound mail yourself, adding another site's MX records (and implicitly their entire domain to get the MX records to resolve) is a bad idea, since there's no mechanism to recognize when they make changes. You need to resolve the DNS issues.

You could start by using one of many online DNS check services like http://www.intodns.com to see if it reports any errors.

You'll also need to check the status of your internal DNS (which is forwarding the requests) at the time email fails.
0
 
bml104Author Commented:
I agree, fix the DNS is the same solution I came up with. I totally understand that adding a static entry can cause problems in the wrong run when change occurs. However, this is a customer we setup on the Trend servers. They never saw the problem until we implemented the Trend solution. So the problem is because of what we did and not an issue with their internal Bind server, in their eyes that is.

I sat on the phone with the admin and had him do an nslookup and dig mx when email was failing. The both showed the resolution was failing at his internal server.The problem is it only happens every few days. It will work fine for 5 days with no issues. Then one day it will send back 550 host not found and the messages will never deliver. 15 min later everything is working fine again.




0
 
bml104Author Commented:
It seems that their issue is trendmicro's mx records point to cnames and some dns servers do not like this.

http://exchangepedia.com/blog/2006/12/should-mx-record-point-to-cname-records.html

I guess their is a battle between trend and everyone else. Everyone knows what the problem is but provides no solution. Anyone here have any ideas how to fix it?

0
Improve Your Query Performance Tuning

In this FREE six-day email course, you'll learn from Janis Griffin, Database Performance Evangelist. She'll teach 12 steps that you can use to optimize your queries as much as possible and see measurable results in your work. Get started today!

 
jcs5003Commented:
Use another email filtering / av service. MX Logic is a good choice.
0
 
Hugh FraserConsultantCommented:
It certainly seems that everyone (including the following article from Microsoft) agrees that MX records pointing to a CNAME are a bad practice, although it's not clear if it violates standards.

http://support.microsoft.com/kb/153001

Regardless, I'd be worried about an email service that uses an addressing technique that many people caution against. TrendMicro's stance that they adhere to changes to the standard isn't much comfort if others do not. I'd be taking it up with them or switching services as well.
0
 
bml104Author Commented:
hfraser,
Your post pointed me to intodns.com which pointed out some interesting errors I pointed out above. I have implemented the fix trend suggested and will post it as soon as I know it works. It might take a week to make sure no emails are lost. When the fix is proven I will award you the points for pointing me in the right direction.


THanks
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

  • 3
  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now