Hi All, I'm really struggling with a bind problem on C6. bind runs split external and internal dns for a few zones. I had to change the motherboard in my server and the ethernet device name changed from eth3 to eth4. I've updated my firewall rules to accommodate that change but bind in not resolving when accessed externally. If I telnet to port 53 from outside my LAN I get a connection. If I stop bind that connection is refused, confirming the local bind instance is getting the connection. Its as if it is refusing to allow the source make a query. nslookup commands from external sources get "connection timed out" I'm stumped. I've even tried to set it up again on an older C5 system I happen to have to get things running again. Any ideas most welcome Ken -- This message has been scanned for viruses and dangerous content by MailScanner, and is believed to be clean.
Am 15.10.2018 um 00:33 schrieb Ken Smith:> If I telnet to port 53 from outside my LAN I get a connection. If I stop > bind that connection is refused, confirming the local bind instance is > getting the connection.You cannot test bind operating on port 53 by UDP through telnet. Alexander
Alexander Dalloz wrote:> Am 15.10.2018 um 00:33 schrieb Ken Smith: >> If I telnet to port 53 from outside my LAN I get a connection. If I >> stop bind that connection is refused, confirming the local bind >> instance is getting the connection. > > You cannot test bind operating on port 53 by UDP through telnet. > > Alexander >Thank you Alexander, that's exactly right. The problem was nothing to do with the MBoard change. Investigating with dig traced the issue. Somehow the UDP port forward setting in my firewall had become corrupt. Re-establishing that fixed the issue. Not a Centos or Bind9 issue at all. Ken -- This message has been scanned for viruses and dangerous content by MailScanner, and is believed to be clean.