[nsd-users] NSD no receiving Notifies

W.C.A. Wijngaards wouter at nlnetlabs.nl
Mon Feb 3 14:39:07 UTC 2014


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi Anand,

On 02/03/2014 03:29 PM, Anand Buddhdev wrote:
> On 03/02/2014 15:03, Sofía Silva Berenguer wrote:
> 
> Hi Sofía,
> 
>> I'm having some issues when a zone is updated on the master. The
>> master sends the notifies to the right port (53530). I can see
>> the notifies with a tcpdump but NSD doesn't transfer the zone. I
>> don't even see any message in the NSD log saying it received the
>> notifies. (the "verbosity" parameter is set to 2).
> 
> Do you have:
> 
> allow-notify: <master>@53530 NOKEY
> 
> for this zone? Without it, NSD will ignore the NOTIFY message from
> the master.

The master is not sending from 53530, so you can omit the port number.
 The port number is ignored for incoming ACL entries, it is used to
specify destination ports (and bind-this-local-port).  We allow the
master to send the notify from a random port number (like other DNS
queries).

But you are right, the allow-notify line is needed otherwise NSD
ignores them.

Best regards,
   Wouter

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/

iQIcBAEBAgAGBQJS76oLAAoJEJ9vHC1+BF+NU9IQAJWJ+RZEo27O+2yvbvx96pAU
+m+Sx792TT0QUU8CMJygkhsINNWXz/+GvAlhZZAOKW1p6TeRTSG8L7zSWM/dsWXK
jSnrtF0n8/Ik6y9JcrKb4oNBzsfD2OKtQXFuPN5+6Il9o1KZ8qLoO9FMNRZAUi+P
j4joSbsazOj15NPC51l4CB6Zxz//0Vufzh5LrVHNQ7ljvS8RIBSWy9FOS4YKNeXh
/I8idT/7sjDRqL8Zu+o9goXVn5EMfPOLqS3aXEQMbgQZobCx6UzY7NXvm5Ki2byk
CGH65E9eLssC/iCgTP9T2us+DX1cWth9QnY8lYQSPXuFIehEpSigpR3EpvCsxcfU
7uU9futr1xVzmsKhwTO77M7KIscMptSsidNpB4hukElc9rnRY7ICKV9Evs4ECy/1
jrUyYeZzBqzZKGJBs39qMrHTLd9QMIAOtKnul+wsRtdLLvD1GC1zUrOor7R1LGDI
JhykokaiXL3iQPYFjNLgDYjx0b1/z5v7YYmFFDao9kKOLI7Omy7XlQeTPA7Z8HMK
dEtW+1XdvzzevBYzlqIbE4U2I14NtcvjcsmE20ucsZzNzIpy74eoh9PW4OmgTgoI
mrGp7Uk/nMxt6nhUMCdZfZAF4LCSz+YeRl1EXwAIOVydCgP1KgdlSnRQilDKV+d7
xsqyPObApekFFCiuKaiv
=+n+Z
-----END PGP SIGNATURE-----



More information about the nsd-users mailing list