Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Forward not working in Bind

Posted on 2009-06-30
5
Medium Priority
?
1,422 Views
Last Modified: 2013-12-23
We are not able to forward requeses to the servers listed:

zone "xxx.com" IN {
       type forward;
       forwarders { xxx.xxx.104.13; xxx.xxx.104.40; };
};
0
Comment
Question by:axl13
  • 3
  • 2
5 Comments
 
LVL 4

Expert Comment

by:Adraenyse
ID: 24747679
Can you post the Options portion of your configuration, and what leads you to believe that it is not working?
0
 

Author Comment

by:axl13
ID: 24747711
options {
#
        directory       "/var/named";
        pid-file        "/var/named/named.pid";
        allow-transfer { xxx.xxx/16; };
        transfer-format one-answer;
        };
logging {
        channel my_file {
                file "/var/named/dns.log";
                severity dynamic;
                print-category yes;
                print-severity yes;
                print-time yes;
                };
#       category default { my_file; };
        category update { my_file; };
        category notify { my_file; };
        category xfer-in { my_file; };
        category xfer-out { my_file; };
#       category security { my_file; };
#       category queries { my_file; };
        };

nslookup turns up server cant find domain: Non-existent domain
0
 

Author Comment

by:axl13
ID: 24868971
Still not able to get FORWARD to work...
0
 
LVL 4

Expert Comment

by:Adraenyse
ID: 24869656
You have no forwarders in your options. Do you have a root hints zone? If not, there is no where for bind to look up any information.


In your options section you need a forwarders statement such as:

forwarders      { 208.67.222.222; 208.67.220.220; };

(These are the OpenDNS servers. I prefer them over any of my ISP servers as they are more reliable and answer faster. http://www.opendns.com/)
Not directly related to your question, but I would recommend also having an allow-recursion statement in your options section for your local subnets or bind will not fully resolve queries for your local machines.

allow-recursion { 127.0.0.1; xx.xx.xx.xx/16; };

Using the statement forward first in the options section will tell bind to try your forwarders first, and if unsucessful, then proceed to query the root zone servers for an answer.

forward first;

If you do not have a root hints zone, this is how you create one

- Connect to ftp.internic.net as anonymous and download domain/named.root- Place named.root in your /var/named directory and chown it named.named and chmod it to 444
- Add the following zone statement to named.conf (outside of the options statement of course)

zone "." { type hint; file "named.root"; };

Hope that helps
Adrae
0
 

Accepted Solution

by:
axl13 earned 0 total points
ID: 25854028
We could not get the forwarding to work, so we had the users seconday the zone
0

Featured Post

 The Evil-ution of Network Security Threats

What are the hacks that forever changed the security industry? To answer that question, we created an exciting new eBook that takes you on a trip through hacking history. It explores the top hacks from the 80s to 2010s, why they mattered, and how the security industry responded.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article explains the fundamentals of industrial networking which ultimately is the backbone network which is providing communications for process devices like robots and other not so interesting stuff.
This month, Experts Exchange’s free Course of the Month is focused on CompTIA IT Fundamentals.
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…
Monitoring a network: why having a policy is the best policy? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the enormous benefits of having a policy-based approach when monitoring medium and large networks. Software utilized in this v…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question