Domaine Non-authoritative answer

Stephane Bortzmeyer bortzmeyer at nic.fr
Wed Jul 16 14:14:12 UTC 2008


On Wed, Jul 16, 2008 at 03:07:48PM +0200,
 list-bind at cardiff.fr <list-bind at cardiff.fr> wrote 
 a message of 442 lines which said:

> Cardiffusion.fr resolves to following ns's : ns4.cardiffdns.fr /
> ns2.cardiffdns.fr but is parked and will be transferred to new's dns
> as soon as soa problems are solved (afnic restrictive dns policy)

? In what way is it restrictive? What's the actual problem?
 
Currently, ns2.cardiffdns.fr gives the following delegation for this
domain:

ns2.cardiffdns.fr.
ns6.cardiffdns.fr.

But Cardiffusion.fr is not even installed on ns6!

% dig @ns6.cardiffdns.fr. ANY Cardiffusion.fr

; <<>> DiG 9.4.2-P1 <<>> @ns6.cardiffdns.fr. ANY Cardiffusion.fr
; (1 server found)
;; global options:  printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 21318
;; flags: qr rd ra; QUERY: 1, ANSWER: 5, AUTHORITY: 2, ADDITIONAL: 3

[No "aa" flag]

You can hardly blame AFNIC policy for such a misconfiguration!

BTW, ns6.cardiffdns.fr is an open recursive name server, which is Bad
<http://www.afnic.fr/actu/nouvelles/general/NN20060404_en>.



More information about the bind-users mailing list