Andrea wrote:
> hallo
> sorry, i speak English just a little...
> when i query (with nslookup) some site on my answer immediatly.
> When I query other site (example it answer (first query)
> DNS request timed out.
>     timeout was 2 seconds.
> at the SECOND query on the same answer correctly.
> I think that if it can use "more time" can answer at the first query.

I think the problem is your isp. Their open resolver is answering to slowly.
best get rid of them and use bind as a resolver.

look into your named.conf and find lines with "forwarder" and make them
a comment. The line should look like "# forwarders ..."
or "// forwarders ..." now.

be shure to have something like

# zone "." in {
#   type hint;
#   file "root.hint";
# };

I have made this a comment because I am using an italian root-server:

zone "." in {
   type slave;
   file "";
   masters {; port 3001; };

please be shure that nslookup is using bind and not you isp.

Somewhere windows does get its dns servers "automatically via dhcp)"
or you can put in two nameservers manually. Here you must put in
you bind.

The line

masters {; port 3001; };

Tells bind to slave the root-zone from;  from host port 53, the normal dns port. port 3001; or from host port 3001.

Nowadays isp are blocking port 53 and open resolvers. That is why
we had to move this one to another port.

Open resolvers are attacked or used for attacking. That is why
best get rid of them and run you own.

Kind regards
Peter and Karin Dambier

