Web Hosting Talk







View Full Version : Complicated Alabanza sec DNS prob


abcweb
09-20-2000, 03:40 PM
I hope you guys/girls know what exactly is going on. How it can be solved. And if it can be solved.

Please read the message below:

-------------------------
Dear support,

I still have problems with SECONDARY DNS (PRIMAIRY DNS is working for all domains!). Before these problems are solved I am unable to resell you hosting accounts :o(

I have already emailed my current clients they will move to a new server at the end of this week, so the problem needs to be solved before that.

The problem is the following. In order to register / change a .nl domainname (which most of my customers have) there need to be 2 active domain name servers with correct settings (these settings are checked by dutch domain registrar!). Unfortunately in most cases your DNS doesn't pass the test, which makes it impossible for me to change the domainname to a new hosting account on your servers.

After doing some research to find the problem, I found the following.

Facts:
Nameservers of my virtual reseller account is: ns(1|2).domain-name-server.nl
Nameservers of the Alabanza client that provides me the accounts is: ns(|2).dnsdomain.net

I have 4 domainnames:
1. abcweb.nl
2. davi.nl
3. website-hosting.nl
4. domain-name-server.nl

1. abcweb.nl is the domainname I gave when I signed-up for your reseller account.
2. davi.nl is the domainname I manually added to DNS with the Virtual Name Server option in my control panel.
3. website-hosting.nl is a parked domain name.
4. domain-name-server.nl is the domainname setup for DNS (ns1.domain-name-server.nl and ns2.domain-name-server.nl)


1. When doing DNS check (in Dutch) for abcweb.nl on name server ns(1|2).domain-name-server.nl, I get several errors.
2. When doing DNS check (in Dutch) for davi.nl on name server ns(1|2).domain-name-server.nl, I get NO errors (so that works)
3. When doing DNS check (in Dutch) for website-hosting.nl on name server ns(1|2).domain-name-server.nl, I get same errors like abcweb.nl
4. When doing DNS check (in Dutch) for domain-name-server.nl on name server ns(1|2).domain-name-server.nl it works!


1. When doing DNS check (in Dutch) for abcweb.nl on name server ns(|2).dnsdomain.net, I get several errors.
2. When doing DNS check (in Dutch) for davi.nl on name server ns(|2).dnsdomain.net, I get several errors.
3. When doing DNS check (in Dutch) for website-hosting.nl on name server ns(|2).dnsdomain.net, I get same errors like abcweb.nl
4. When doing DNS check (in Dutch) for domain-name-server.nl on name server ns(|2).dnsdomain.net, I get same errors like abcweb.nl


As you can see the only domainnames actually working are davi.nl and domain-name-server.nl. To find out why those are working, I did several digs and got the following results.

For PRIMAIRY DNS lookup (ns1.domain-name-server.nl) I get the following results (same for each of the above domainnames):
Dig abcweb.nl@ns1.domain-name-server.nl (64.176.173.224) ...
Authoritative Answer
Recursive queries supported by this server
Query for abcweb.nl type=255 class=1
abcweb.nl MX (Mail Exchanger) Priority: 10 mail.abcweb.nl
abcweb.nl A (Address) 64.176.183.173
abcweb.nl NS (Nameserver) ns1.domain-name-server.nl
abcweb.nl NS (Nameserver) ns2.domain-name-server.nl
abcweb.nl SOA (Zone of Authority) Primary NS:ns1.domain-name-server.nl Responsible person:hostmaster@abcweb.nl
serial:92009
refresh:86000s (230 hours)
retry:7200s (2 hours)
expire:3600000s (410 days)
minimum-ttl:43200s (12 hours)
abcweb.nl NS (Nameserver) ns1.domain-name-server.nl
abcweb.nl NS (Nameserver) ns2.domain-name-server.nl
mail.abcweb.nl A (Address) 64.176.183.173
ns1.domain-name-server.nl A (Address) 64.176.173.224
ns2.domain-name-server.nl A (Address) 64.176.179.56

For SECONDARY DNS lookup (ns2.domain-name-server.nl) I get the following results:
For non working domainnames abcweb.nl and website-hosting.nl:
--------------------------------------------------------
Dig abcweb.nl@ns2.domain-name-server.nl (64.176.179.56) ...
Authoritative Answer
Recursive queries supported by this server
Query for abcweb.nl type=255 class=1
abcweb.nl A (Address) 64.176.183.173
abcweb.nl MX (Mail Exchanger) Priority: 10 mail.abcweb.nl
abcweb.nl NS (Nameserver) ns.dnsdomain.net
abcweb.nl NS (Nameserver) ns2.dnsdomain.net
abcweb.nl SOA (Zone of Authority) Primary NS:ns.dnsdomain.net Responsible person:hostmaster@dnsdomain.net
serial:200025604
refresh:86000s (230 hours)
retry:7200s (2 hours)
expire:3600000s (410 days)
minimum-ttl:600s (10 minutes)
abcweb.nl NS (Nameserver) ns.dnsdomain.net
abcweb.nl NS (Nameserver) ns2.dnsdomain.net
mail.abcweb.nl A (Address) 64.176.183.173
ns.dnsdomain.net A (Address) 208.56.139.104
ns2.dnsdomain.net A (Address) 208.56.138.89
-------------------------------------------------------------

For working domainnames davi.nl and domain-name-server.nl:
--------------------------------------------------------
Dig davi.nl@ns2.domain-name-server.nl (64.176.179.56) ...
Authoritative Answer
Recursive queries supported by this server
Query for davi.nl type=255 class=1
davi.nl A (Address) 64.176.183.173
davi.nl MX (Mail Exchanger) Priority: 10 mail.davi.nl
davi.nl NS (Nameserver) ns1.domain-name-server.NL
davi.nl NS (Nameserver) ns2.domain-name-server.NL
davi.nl SOA (Zone of Authority) Primary NS:ns1.domain-name-server.NL Responsible person:hostmaster@abcweb.NL
serial:91901
refresh:86000s (230 hours)
retry:7200s (2 hours)
expire:3600000s (410 days)
minimum-ttl:43200s (12 hours)
davi.nl NS (Nameserver) ns1.domain-name-server.NL
davi.nl NS (Nameserver) ns2.domain-name-server.NL
mail.davi.nl A (Address) 64.176.183.173
ns1.domain-name-server.NL A (Address) 64.176.173.224
ns2.domain-name-server.NL A (Address) 64.176.179.56
------------------------------------------------------------

As you can see the zone files for SECONDARY DNS are not the same. The nameserver is different. I am almost sure this is causing the DNS check to fail on several domainnames.

If these zone files for secondary DNS would be same like the zone files in PRIMAIRY DNS, there probably wouldn't be a problem. I am not sure why SECONDARY DNS has wrong values.

I hope my problem is clear now and I hope it can be solved.

Regards,
--

Dreas van Donselaar
info@abcweb.nl
http://www.abcweb.nl

ABC Web
Molenlaan 73
3055 EH Rotterdam
The Netherlands

GordonH
09-21-2000, 04:08 AM
have yopu done a Traceroute to the IP addresses of your two virtual name servers?

I had a similar problem where NS2 was unreachable from outside the Alabanza NOC but was reachable from certain servers within it.

I got them to assign a new IP address to NS2 and that cured it.

I would check that the servers are actually reachable first.

Gordon

abcweb
09-21-2000, 09:34 AM
Since a dig works the nameservers are actually working and reachable. The problem is the wrong zone files in sec DNS.