DNS UP
Hi
We are running 2 BM (3.8) Proxies and until today they have been
operating reasonably well.
Today we have started getting a lot of 504 errors on workstations using
either both servers, looking at the proxy DNS page (on both servers) the
DNS links are continually going up and down (like our internet)
We have 3 DNS servers entered 2 external and 1 internal. I have tested
from outside the BM Servers $and know the 2 external DNS servers are
working fine (also no one else who use our provider have an issue). The
internal DNS also seems fime.
We have not made any changes to th...
DNS security patchHi, running NW65SP7. I see since Aug 8th (TID#5032400) the security patch
for the popular DNS issues has now been posted. What I'm wondering about is
it necessary to post this to your server if your DNS is only used for
internal queries? That is the DNS cannot be queried from outside the
firewall?
If not needed when an internal DNS only, then I won't bother installing and
risking my environment, since there's no other fix mentioned in the release.
Cheers
James
Jjb,
> That is the DNS cannot be queried from outside the
> firewall?
Do you trust t...
DNS question for security (DMZ, Private and ISP DNS _My customer DNS (two WIN 2000 AD) in the private will forward request to IIS
5 DNS in the DMZ. When registering the domain of the customer, would you
use the ISP DNS for the customer'domain 2 DNS? Or you would use the DMZ'DNS
Server in the DMZ and the ISP DNS for the secondary ??? I'm concerned about
security....
JF
Unless your customer has an arrangement for the ISP to host their public
DNS, then it will do no good to have the ISP's DNS servers listed in the
domain registry. Security wise, it would be better to have 2 dedicated DNS
servers operating in s...
DNS SECURITY ALGORITHM NUMBERS DNS KEY and SIG RRsDNS SECURITY ALGORITHM NUMBERS DNS KEY and SIG RRs [RFC2535] use an 8-bit
number used to identify
the security algorithm being used: Number DescriptionReference
--------- ------------------------------ ---------
0 Reserved 1 RSA/MD5
[RFC2537,RFC1321]
deprecated, see 5 2
Diffie-Hellman [RFC2539] 3 DSA/SHA1
[RFC2536,DSA,SHA-1] 4 Reserved for Elliptic Curve Crypto 5
RSA/SHA-1 [RFC3110] 6 - 251 Reserved by the
IANA 252 ...
DNS not forwarding to other dns servers
We had a problem the other day when we lost power on our external DNS
server. Users out on the internet were not able to hit our website and
do any resolutions to our Secure VPN gateway. When we used the URL
address for the website it would not resolve. When we used the VPN
Client it would not resolve the name to an address to access the VPN. If
we used the IP address it would work.
I was under the impression if my dns server went down anyone trying to
resolve address to my domain would get the resolution from their DNS
server since this information was cached in their DNS Server....
DNS 1 and DNS 2So out of curiosity I'm looking at all the connections in my firewall
and ever once and while some hits on DNS 1 and 2 same as listed on my
router web page . Some times it's to a close port others not . Is this
normal activity from my ISP ? Or something I should be worried about ?
tia
CYS Hemi wrote:
> looking at all the connections in my firewall and ever once and while
> some hits on DNS 1 and 2 same as listed on my router web page.
This is too vague to understand your question let alone answer it.
Are you talking about a DSL or cable modem? Are you talking ab...
Novell DNS with W2K DNSHI,
I have to setup and AD in our NetWare 5.1 environment. DNS service
are hosted by Netware server. AD needs a DNS server. Can I use the
Netware DNS or I need to configure a new W2K DNS? Since AD need to
register specific records in DNS.
If you have any good documents or links about that I will appreciate.
Thanks in advance
Dany
Some of my clients are in the same boat. The configuration that seems
to work best for them is to have the MS DNS running to handle the AD
stuff. Also run the Novell DNS pointing to the MS DNS as the
authoritative source. Have the ...
Securing DNSAny thoughts on protecting DNS queries from prying eyes?
I already have two servers running ISC BIND 9.9.4 setup to do DNSSEC
validation and recursive. I do not have set to forward either so the
servers queries the root servers. I never use my ISP's DNS servers as I
see it as a privacy concern.
I know the DNS queries are UDP unecrypted.
Is there anyway to encrypt the DNS traffic between my DNS servers and
root servers?
With all this talk about HTTPS PFS and secure VPN's......what about DNS
and DNSSEC? How can we protect ourselves from tampered DNS queries and
in...
External DNSwe are having the following 2 issues:
1 - After we connect to the Bordermanger 3.8 vpn server we are unable to
acces any Internat WWW sites or ping any Internat sites - but we can ping an
access all internal sites.
2 - we do have dns configured in IManager to send out DNS info to the VPN
client - BUT we are ubable to ping internal servers by name only by ip..
please help
Menachem Kain
hi,
> 1 - After we connect to the Bordermanger 3.8 vpn server we are unable to
> acces any Internat WWW sites or ping any Internat sites - but we can ping an
> access all intern...
DNS Forwarders to Microsoft DNSWe have 80% of our network on Novell Netware and use DHCP and DNS on
Novell servers.
Recently there have been implementations of Microsoft Active Directory
installations and we were told that Microsoft does not support Novell
DNS
and we are therefore having to keep a Microsoft DNS.
I have set a forwarder on my DNS server that points to the IP address
of
my Windows 2003 server and thought that if the Novell DNS could not
reply
it would be forwarded to the Win2003 DNS, it isn't working though, any
ideas?
Mark
We have 4 Novell DNS servers and I have just not...
Securing DNS.
Can anyone tell me what's the best way to lock down DNS so that it
doesn't send out root hints ?
Just moved our DNS and now it's responding to such queries.
Is this something I can do with a query filter ?!
Thanks.
--
neiljt1
------------------------------------------------------------------------
neiljt1,
It appears that in the past few days you have not received a response to your
posting. That concerns us, and has triggered this automated reply.
Has your problem been resolved? If not, you might try one of the following options:
- Visit http...
Security and DNS
--____FIVYRACBLJROFPKWMWQS____
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: quoted-printable
Hi all:
We're running DNS on Netware 6.5 SP2 as a clustered resource. It is =
working very well (thanks for asking!)
We have been running through our year end security self audit and I have =
been tweaking our DNS setup up.=20
What I have done is this:
Each client on LAN: gets 2 DNS entries. One local DNS server and one at a =
remote office (both Netware). Offices are interconnected by private lines =
so this process is all behind the firewall.
Each...
Secure DNS?I just read an article about secure dns, being called DNSSEC. (www.dnssec.net)
Does Novell's DNS server support this new feature?
Thanks,
Cheryl
Cheryl Fischer
Network / Email Administrator
Horizon Bank
Cheryl,
It appears that in the past few days you have not received a response to your
posting. That concerns us, and has triggered this automated reply.
Has your problem been resolved? If not, you might try one of the following options:
- Do a search of our knowledgebase at http://support.novell.com/search/kb_index.jsp
- Check all of the other support tools a...
Question about DNS about DNS over VPNHi,
we have got a problem (probabliy we misunderstood something) with the VPN -
Client.
When I login with the VPN-Client, where can I set the DNS-Context (Search
Context) which will be passed to the Client?
I can not find any settings at the VPN Definitions.
Thanks in advance
Reg. Thomas
Thomas,
It appears that in the past few days you have not received a response to your
posting. That concerns us, and has triggered this automated reply.
Has your problem been resolved? If not, you might try one of the following options:
- Do a search of our knowledgebase at http...