Zone Transfer Problems: Windows 2003 Server to Bind 9

Benjamin G. Dugas dugas at spawar.navy.mil
Wed Sep 22 22:50:31 UTC 2004


Have them click start, programs go to administrative tools and select DNS
Expand forward lookup zones 
Right click on the zone name that you want to allow to be transferred and go
to properties.
Click on the zone transfer tab
Check the allow transfer zone and have them input the IP address of your
server and click add
They can also add you in to the notify server list as well. 
To do so, click notify button on the zone transfer tab
Have them put your IP there as well
Click OK twice and start and stop dns
Good luck and email if you need further help or clarification.

Thanks,

Ben


-----Original Message-----
From: bind-users-bounce at isc.org [mailto:bind-users-bounce at isc.org] On Behalf
Of Brian Kimsey-Hickman
Sent: Wednesday, September 22, 2004 8:18 AM
To: bind9-users at isc.org
Subject: Zone Transfer Problems: Windows 2003 Server to Bind 9

I am trying to re-establish a zone transfer with another organization
that has just upgraded from Windows 2K to 2003.  I am using Bind 9.2.1
on a Debain 3 system.  The transfer was working before but now I see
this error since they have upgraded:

Sep 14 01:38:57 compt-ns3 named[18471]: transfer of 'occaudit
.org.IN' from 192.169.140.12#53: resetting
Sep 14 01:38:57 compt-ns3 named[18471]: transfer of 'occaudit.org/IN'
from 192.1/
68.140.12#53:  failed while receiving responses:  REFUSED
Sep 14 01:38:57 compt-ns3 named[18471]: transfer of 'occaudit.org/IN'
from 192.1/
68.140.12#53: end of transfer

When I do a dig occaudit.org @192.168.140.12 axfr I ger:

; <<>> DiG 9.2.1 <<>> occaudit.org @192.168.140.12 axfr
;; global options:  printcmd
; Transfer failed

When I do a dig ml2.occaudit.org @192.168.140.12 I get the answer

ml2.occaudit.org.   3600   IN  A   192.168.140.12

So it looks to me like I can connect to their DNS server but they are
not allowing zone transfers to my name server.  I have never used a
Windows 2003 DNS server.  How do they set that so I can do my
transfer?

Anybody know?

Thanks,

Brian





More information about the bind-users mailing list