Understanding SERVFAIL (for google)
root at horus.isnic.is
Thu Mar 31 21:08:50 UTC 2005
Bill Moseley wrote:
> 9.2.2-P3-1 on Debian Stable.
> I'm trying to understand how to debug this.
> moseley at mardy:~$ dig www.google.com.
> ; <<>> DiG 9.2.2-P3 <<>> www.google.com.
> ;; global options: printcmd
> ;; Got answer:
> ;; ->>HEADER<<- opcode: QUERY, status: SERVFAIL, id: 23596
> ;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 0
> ;; QUESTION SECTION:
> ;www.google.com. IN A
> ;; Query time: 1 msec
> ;; SERVER: 192.168.1.1#53(192.168.1.1)
> ;; WHEN: Wed Mar 30 16:57:09 2005
> ;; MSG SIZE rcvd: 32
> Yet a few minutes later the same query works. This is new in the last
> week, so it seems, and nothing has been changed on that server. So,
> what I'm looking for is tips on how to debug the SERVFAIL while it's
> I am finding other similar posts about intermittent SERVFAIL (at least
> when I can search google...), but I'm not seeing an explanation.
I'm using 9.2.2-P1 and have the same problem, it could be caused by
c.l.google.com not responding:
$ dnstracer -s ns4.google.com www.l.google.com
Tracing to www.l.google.com via ns4.google.com, timeout 15 seconds
ns4.google.com [google.com] (18.104.22.168)
|\___ d.l.google.com [l.google.com] (22.214.171.124) Got authoritative
|\___ c.l.google.com [l.google.com] (126.96.36.199) * * *
|\___ b.l.google.com [l.google.com] (188.8.131.52) Got authoritative
\___ a.l.google.com [l.google.com] (184.108.40.206) Got authoritative
(PGP key 89C93563)
-- Attached file included as plaintext by Ecartis --
-- File: signature.asc
-- Desc: OpenPGP digital signature
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org
-----END PGP SIGNATURE-----
More information about the bind-users