Solved

DNS BIND

Posted on 2013-01-29
3
258 Views
Last Modified: 2013-02-06
Hello BIND experts,

I'm not a DNS expert. Suppose i have two BIND servers. Both have the entries below:

vpn.pepsi.com.                 in      ns      adns-LA.pepsi.com.
vpn.pepsi.com.                 in      ns      adns-NY.pepsi.com.
adns-LA.pepsi.com.               in      a      1.1.1.1
adns-NY.pepsi.com.               in      a      2.2.2.2


Question#1: Are lookups for vpn.pepsi.com being round-robined or are both A records being returned to the client?

Question #2: If lookups are being round-robined, supposed adns-la.pepsi.com (1.1.1.1) goes down. Wouldn't BIND still try to answer with that record? I assume yes since it doesnt have a way to know that adns-la.pepsi.com is down.
0
Comment
Question by:trojan81
  • 2
3 Comments
 
LVL 13

Expert Comment

by:Ugo Mena
ID: 38833907
to configure RR on BIND DNS, you would define multiple A records with the same name and different IPs.

adns-LA.pepsi.com.               in      a      1.1.1.1
                                                 in      a      2.2.2.2

adns-NY.pepsi.com.               in      a      3.3.3.3
                                                 in      a      4.4.4.4

or similarly

vpn.pepsi.com                in          a       1.1.1.1
                                         in           a       2.2.2.2
                                         in            a      3.3.3.3
                                         in             a     4.4.4.4

DNS will deliver all the IP addresses defined, the first IP address in the returned list will be in a (default) round robin order (controlled by the rrset-order 'named.conf' statement).
0
 

Author Comment

by:trojan81
ID: 38833920
ultralites, thanks for the explanation. I don't see that in the BIND configs so I assume we are not RR.

So based on my example, when a user does a lookup for vpn.pepsi.com is he querying both ADNS-la.pepsi.com and adns-ny.pepsi.com?
0
 
LVL 13

Accepted Solution

by:
Ugo Mena earned 500 total points
ID: 38835727
I think it would depend on the routing decisions made based on path, network policies, and/or rule-sets. I would assume the faster/shorter connection would respond first.
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Find out how to use Active Directory data for email signature management in Microsoft Exchange and Office 365.
This article shows how to deploy dynamic backgrounds to computers depending on the aspect ratio of display
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

896 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now