Search Again:

Re: DNS problem

From: Men & Mice Support
Date: Wednesday, May 26, 1999
Time: 5:38:00 am

>We have encountered a problem that we have been unable to solve.
>
>Our proxy sever and web server halt at intermittent times and on the event
>log we get the following error message.
>
>"DNS Server encountered a packet addressed to itself -- IP address
>203.58.14.7. The DNS server should never be sending a packet to itself.
>This situation usually indicates a configuration error. Check the following
>areas for possible self-send configuration errors: 1) Forwarders list.
>(DNS servers should not forward to themselves). 2) Master lists of
>secondary zones. 3) Notify lists of primary zones. 4) Delegations of
>subzones. Must not contain NS record for DNS server Example: ->
>This DNS server dns1.foo.com is the primary for the zone foo.com. -> You
>have delegated the zone bar.foo.com to bardns.bar.foo.com. and are
>NOT running the bar.foo.com zone on this DNS (dns1.foo.com). ->
>bar.foo.com MUST NOT have an NS record that points at dns1.foo.com.
>Note, you should make this check (with nslookup or DNS manager) both on
>this DNS server and on the server(s) you delegated the subzone to. It is
>possible that the delegation was done correctly, but that the primary
>DNS for the subzone, has any incorrect NS record pointing back at this
>server. If this incorrect NS record is cached at this server, then the
>self-send could result. If found, the subzone DNS server admin should
>remove the offending NS record".
>
>The servers still run however our web sites seize. Is there any particular
>errors that you can suggest we focus on??

One possible reason is if your server has been the victim of a DNS spoofing
attack. I notice that your servers are vulnerable to this. You should
upgrade to the latest version of QuickDNS Pro, which isn't vulnerable this
way. The upgrade is free to owners of version 2.x.

After looking over your zone files, I don't see any other reason for this
behavior. Make sure the proxy server isn't trying to do anything in terms
of DNS service. I assume you've checked the forwarders list in QuickDNS
Admin, as well as the Secondary Domains file.

If you're using the WebSTAR proxy server, and the proxy server locks up,
that would explain why the web server fails. If the proxy server locks when
trying to do something DNS related, that might explain why QuickDNS Pro is
reporting a problem.

Off topic: I noticed that the SOA record (domain info) for
intelligent.com.au has an exceedingly large TTL: 1762590720. That
translates to around 55 years. I hope you never need to change any of your
other SOA values, because they'll be cached for a long, long time.

Hope this helps.
____________________________________________________________________
Chris Buxton Men & Mice
cbuxton@menandmice.com http://www.menandmice.com



Messages In This Thread:



Return to Digital Point Solutions' Home Page