Solved

Out of zone question in DNS

Posted on 2011-02-23
9
797 Views
Last Modified: 2012-05-11
I am running named-checkzone

named-checkzone foo.edu foo.edu.db


I am seeing this:

zone foo.edu/IN: csr.foo.edu/NS 'diamond.csr.foo.edu' (out of zone) has no addresses records (A or AAAA)

$ grep -i diamond.csr.foo.edu *

foo.edu.db:csr.foo.edu.         86400   IN      NS      diamond.csr.foo.edu.
foo.edu.db:diamond.csr.foo.edu. 86400   IN      A       128.163.154.200

Is this an issue? I am failing to understand why it has an error

or should I grep a different way

grep -i foo.edu.db *

Bind is version is
BIND 9.7.1-P2
0
Comment
Question by:richsark
  • 6
  • 2
9 Comments
 
LVL 1

Author Comment

by:richsark
ID: 34970095
Hi, Is this a tough one?
0
 
LVL 70

Expert Comment

by:Chris Dent
ID: 34971196

Nothing wrong with the entries you have there, I doubt you can share the original zone file with us?

Chris
0
 
LVL 28

Accepted Solution

by:
mikebernhardt earned 500 total points
ID: 34971575
The NS record is for csr.foo.edu but the zone is foo.edu. BIND would consider csr.foo.edu to be a subdomain of foo.edu, which it appears may not have a nameserver listed.
0
 
LVL 1

Author Comment

by:richsark
ID: 34974764
Also I think its not authoritive.

How, do I run check zone to not report on them? Is there a switch
0
Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

 
LVL 1

Author Comment

by:richsark
ID: 34978823
What u guys think ?
0
 
LVL 1

Author Comment

by:richsark
ID: 34978826
What u guys think ?
0
 
LVL 28

Expert Comment

by:mikebernhardt
ID: 34982335
Don't know the answer to how to tell it not to run the check- but why would you not want to know that your nameservers are not set up correctly?
0
 
LVL 1

Author Comment

by:richsark
ID: 34993745
Hi,
does anyone know of a way to use check-zone switche not to report if the zone/serial loaded? I dont n
0
 
LVL 1

Author Comment

by:richsark
ID: 35310511
Hi, any update to my above question on check zone switch?
0

Featured Post

How your wiki can always stay up-to-date

Quip doubles as a “living” wiki and a project management tool that evolves with your organization. As you finish projects in Quip, the work remains, easily accessible to all team members, new and old.
- Increase transparency
- Onboard new hires faster
- Access from mobile/offline

Join & Write a Comment

Suggested Solutions

One of the most often confused topics in the area DNS is the idea of GLUE records. Specifically, what they are, when they are needed, when they are provided, and how they are created. First, WHAT IS GLUE? To understand GLUE, you must first under…
BIND is the most widely used Name Server. A Name Server is the one that translates a site name to it's IP address. There is a new bug in BIND (https://kb.isc.org/article/AA-01272), affecting all versions of BIND 9 from BIND 9.1.0 (inclusive) thro…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
Polish reports in Access so they look terrific. Take yourself to another level. Equations, Back Color, Alternate Back Color. Write easy VBA Code. Tighten space to use less pages. Launch report from a menu, considering criteria only when it is filled…

760 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

20 Experts available now in Live!

Get 1:1 Help Now