From owner-freebsd-questions@FreeBSD.ORG Wed Jun 11 13:49:50 2008 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 20606106568E for ; Wed, 11 Jun 2008 13:49:50 +0000 (UTC) (envelope-from jon@radel.com) Received: from wave.radel.com (wave.radel.com [216.143.151.4]) by mx1.freebsd.org (Postfix) with ESMTP id B10388FC21 for ; Wed, 11 Jun 2008 13:49:49 +0000 (UTC) (envelope-from jon@radel.com) Received: by wave.radel.com (CommuniGate Pro PIPE 4.1.6) with PIPE id 7679963; Wed, 11 Jun 2008 09:49:49 -0400 Received: from [192.168.43.221] (account jon@radel.com HELO braeburn.local) by wave.radel.com (CommuniGate Pro SMTP 4.1.6) with ESMTP-TLS id 7679961; Wed, 11 Jun 2008 09:49:38 -0400 Message-ID: <484FD7F2.7090308@radel.com> Date: Wed, 11 Jun 2008 09:49:38 -0400 From: Jon Radel User-Agent: Thunderbird 2.0.0.14 (Macintosh/20080421) MIME-Version: 1.0 To: Wojciech Puchar References: <20080610171600.R76827@wojtek.tensor.gdynia.pl> <484EA302.4070104@radel.com> <20080611000612.H13017@wojtek.tensor.gdynia.pl> <484EFBBE.8030502@radel.com> <20080611001613.Y13017@wojtek.tensor.gdynia.pl> <484F1C45.1050406@ibctech.ca> <20080611101951.V58163@wojtek.tensor.gdynia.pl> In-Reply-To: <20080611101951.V58163@wojtek.tensor.gdynia.pl> X-Enigmail-Version: 0.95.6 Content-Type: multipart/signed; protocol="application/x-pkcs7-signature"; micalg=sha1; boundary="------------ms070908040006050907070205" X-Radel.com-MailScanner-Information: Please contact Jon for more information X-Radel.com-MailScanner: Found to be clean X-Mailer: CommuniGate Pro CLI mailer Cc: Steve Bertrand , freebsd-questions@freebsd.org Subject: Re: OT: lots of IPv6 DNS requests X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 11 Jun 2008 13:49:50 -0000 This is a cryptographically signed message in MIME format. --------------ms070908040006050907070205 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Wojciech Puchar wrote: > >> >> pearl# dig aaaa dns3.tensor.gdynia.pl >> dns3.tensor.gdynia.pl. 21682 IN AAAA 2001:4070:101:2::1 > > that's funny because i have in my domain: > > dns3 A 213.192.74.1 > dns3 AAAA 2001:4070:101::1 > > not :2::1 > > > tried my secondary dns - the same. > > > tried dig aaaa dns3.tensor.gdynia.pl from other server in poland - the > same! > > any idea where this :2::1 can be kept. nowhere on my machines for sure. > > i did grep 2001:4070:101:2::1 /etc/namedb/*/* on both my primary and > secondary dns - found only one position that defines > wojtek.tensor.gdynia.pl > > nothing more. > > > asked polish telecom DNS to look how it look from outside, got this > dns3.tensor.gdynia.pl. 10800 IN AAAA 2001:4070:101::1 > > which is OK. > > > as you get :2::1 - any idea why? Sure thing. I know exactly why. I keep telling you why. You keep ignoring me. Frankly, I'm beginning to suspect that you're only pretending that you know how DNS works. You might want to research it a bit. Run this: $ dig @bilbo.nask.org.pl tensor.gdynia.pl ns ; <<>> DiG 9.4.2 <<>> @bilbo.nask.org.pl tensor.gdynia.pl ns ; (1 server found) ;; global options: printcmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 45423 ;; flags: qr rd; QUERY: 1, ANSWER: 0, AUTHORITY: 3, ADDITIONAL: 6 ;; WARNING: recursion requested but not available ;; QUESTION SECTION: ;tensor.gdynia.pl. IN NS ;; AUTHORITY SECTION: tensor.gdynia.pl. 28800 IN NS dns2.tensor.gdynia.pl. tensor.gdynia.pl. 28800 IN NS dns.tensor.gdynia.pl. tensor.gdynia.pl. 28800 IN NS dns3.tensor.gdynia.pl. ;; ADDITIONAL SECTION: dns.tensor.gdynia.pl. 28800 IN A 213.192.74.1 dns.tensor.gdynia.pl. 28800 IN AAAA 2001:4070:101::1 dns2.tensor.gdynia.pl. 28800 IN A 83.18.148.142 dns2.tensor.gdynia.pl. 28800 IN AAAA 2001:4070:101::1 dns3.tensor.gdynia.pl. 28800 IN A 83.12.228.78 dns3.tensor.gdynia.pl. 28800 IN AAAA 2001:4070:101:2::1 ;; Query time: 233 msec ;; SERVER: 195.187.245.51#53(195.187.245.51) ;; WHEN: Wed Jun 11 13:21:48 2008 ;; MSG SIZE rcvd: 222 over and over until you catch on to what it means. Once you understand that, then run this: $ dig @f-dns.pl. tensor.gdynia.pl ns ; <<>> DiG 9.4.2 <<>> @f-dns.pl. tensor.gdynia.pl ns ; (2 servers found) ;; global options: printcmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 13848 ;; flags: qr rd; QUERY: 1, ANSWER: 0, AUTHORITY: 5, ADDITIONAL: 2 ;; WARNING: recursion requested but not available ;; QUESTION SECTION: ;tensor.gdynia.pl. IN NS ;; AUTHORITY SECTION: gdynia.pl. 86400 IN NS dns2.task.gda.pl. gdynia.pl. 86400 IN NS bilbo.nask.org.pl. gdynia.pl. 86400 IN NS ns-pl.tpnet.pl. gdynia.pl. 86400 IN NS kirdan.warman.nask.pl. gdynia.pl. 86400 IN NS dns.task.gda.pl. ;; ADDITIONAL SECTION: dns.task.gda.pl. 86400 IN A 153.19.250.100 dns2.task.gda.pl. 86400 IN A 212.77.97.222 ;; Query time: 131 msec ;; SERVER: 2001:1a68:0:10::189#53(2001:1a68:0:10::189) ;; WHEN: Wed Jun 11 13:30:16 2008 ;; MSG SIZE rcvd: 200 over and over until you realize why this means that the results of the first command actually matter. Or you could skip a step and run: $ dig @b-dns.pl. tensor.gdynia.pl ns ; <<>> DiG 9.4.2 <<>> @b-dns.pl. tensor.gdynia.pl ns ; (1 server found) ;; global options: printcmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 10267 ;; flags: qr rd; QUERY: 1, ANSWER: 0, AUTHORITY: 3, ADDITIONAL: 6 ;; WARNING: recursion requested but not available ;; QUESTION SECTION: ;tensor.gdynia.pl. IN NS ;; AUTHORITY SECTION: tensor.gdynia.pl. 28800 IN NS dns3.tensor.gdynia.pl. tensor.gdynia.pl. 28800 IN NS dns2.tensor.gdynia.pl. tensor.gdynia.pl. 28800 IN NS dns.tensor.gdynia.pl. ;; ADDITIONAL SECTION: dns.tensor.gdynia.pl. 28800 IN A 213.192.74.1 dns.tensor.gdynia.pl. 28800 IN AAAA 2001:4070:101::1 dns2.tensor.gdynia.pl. 28800 IN A 83.18.148.142 dns2.tensor.gdynia.pl. 28800 IN AAAA 2001:4070:101::1 dns3.tensor.gdynia.pl. 28800 IN A 83.12.228.78 dns3.tensor.gdynia.pl. 28800 IN AAAA 2001:4070:101:2::1 ;; Query time: 138 msec ;; SERVER: 80.50.50.10#53(80.50.50.10) ;; WHEN: Wed Jun 11 13:32:09 2008 ;; MSG SIZE rcvd: 222 Basically, according to the root servers, pl has 8 nameservers, a-dns.pl through h-dns.pl. They give different answers when asked about gdynia.pl and tensor.gdynia.pl a: returns set of 5, including bilbo.nask.org.pl, which then returns the dreaded address b: returns set of 5 for gdynia.pl, BUT WHEN ASKED ABOUT TENSOR.GDYNIA.PL returns your 3 nameservers, with the dreaded address in glue (unlike all the other pl TLD servers) c: like a d: like a e: like a f: like a g: like a h: like a but less additional information So, obviously, not all paths lead to the bad address, but there are plenty that do. Is this your fault? I haven't the foggiest. I would suggest you go and talk to your parents about why they're making you so unhappy. :-) --Jon Radel --------------ms070908040006050907070205 Content-Type: application/x-pkcs7-signature; name="smime.p7s" Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="smime.p7s" Content-Description: S/MIME Cryptographic Signature MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIIJMTCC AvMwggJcoAMCAQICEG2TkfF/93Sx9LCftry1D3YwDQYJKoZIhvcNAQEFBQAwYjELMAkGA1UE BhMCWkExJTAjBgNVBAoTHFRoYXd0ZSBDb25zdWx0aW5nIChQdHkpIEx0ZC4xLDAqBgNVBAMT I1RoYXd0ZSBQZXJzb25hbCBGcmVlbWFpbCBJc3N1aW5nIENBMB4XDTA4MDMyNDE2NTkyMVoX DTA5MDMyNDE2NTkyMVowXjEOMAwGA1UEBBMFUmFkZWwxEzARBgNVBCoTCkpvbiBUaG9tYXMx GTAXBgNVBAMTEEpvbiBUaG9tYXMgUmFkZWwxHDAaBgkqhkiG9w0BCQEWDWpvbkByYWRlbC5j b20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDPdCxQufreHHDAI9YN2axx87Rf 0TK1PYFMlJHi4y1ebdAMPqR6M44bz+3m8YnKn1bmIf7dWyisWyAIQYCOhW/2r66o4MdF9qJ9 z5uhMy+28zaJP/Glg64C3WPM0VfveCgvu+ApEyf2JDbjc/hUomw8KpppgOcn1wX6PZGbhHVv eAvDTWJ0ugqo08Ny6GR0bsGvePmxdWSQq+0aGTHqA1I2EozJBZ8W5xlUtKe22j56i1Uw1ujk Rlosdu2PTs8QOY1OUHuLPnEV9EWtYF7g6bXDUDsJxypXZy9qTipPplYXjdWgkLVRvezri+BN kgin8UKhKLQ99vS25zrMFKu80g31AgMBAAGjKjAoMBgGA1UdEQQRMA+BDWpvbkByYWRlbC5j b20wDAYDVR0TAQH/BAIwADANBgkqhkiG9w0BAQUFAAOBgQAR4u9o4CFvztyo0sZb3tCQIWYb 5U4jW9da3goVwWIkMz+qeCb2kiTQfsSmOdF9YJ8VTRdYW0l0fQbqL5JikVhaYeX85cpqZ3iA /PPJpfPtJw8g5jJOAROVAvxydMZXQYxyIBMV4HNG3qir44YnyfmJXkBtRFYWdxBc7bQpoZSZ jzCCAvMwggJcoAMCAQICEG2TkfF/93Sx9LCftry1D3YwDQYJKoZIhvcNAQEFBQAwYjELMAkG A1UEBhMCWkExJTAjBgNVBAoTHFRoYXd0ZSBDb25zdWx0aW5nIChQdHkpIEx0ZC4xLDAqBgNV BAMTI1RoYXd0ZSBQZXJzb25hbCBGcmVlbWFpbCBJc3N1aW5nIENBMB4XDTA4MDMyNDE2NTky MVoXDTA5MDMyNDE2NTkyMVowXjEOMAwGA1UEBBMFUmFkZWwxEzARBgNVBCoTCkpvbiBUaG9t YXMxGTAXBgNVBAMTEEpvbiBUaG9tYXMgUmFkZWwxHDAaBgkqhkiG9w0BCQEWDWpvbkByYWRl bC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDPdCxQufreHHDAI9YN2axx 87Rf0TK1PYFMlJHi4y1ebdAMPqR6M44bz+3m8YnKn1bmIf7dWyisWyAIQYCOhW/2r66o4MdF 9qJ9z5uhMy+28zaJP/Glg64C3WPM0VfveCgvu+ApEyf2JDbjc/hUomw8KpppgOcn1wX6PZGb hHVveAvDTWJ0ugqo08Ny6GR0bsGvePmxdWSQq+0aGTHqA1I2EozJBZ8W5xlUtKe22j56i1Uw 1ujkRlosdu2PTs8QOY1OUHuLPnEV9EWtYF7g6bXDUDsJxypXZy9qTipPplYXjdWgkLVRvezr i+BNkgin8UKhKLQ99vS25zrMFKu80g31AgMBAAGjKjAoMBgGA1UdEQQRMA+BDWpvbkByYWRl bC5jb20wDAYDVR0TAQH/BAIwADANBgkqhkiG9w0BAQUFAAOBgQAR4u9o4CFvztyo0sZb3tCQ IWYb5U4jW9da3goVwWIkMz+qeCb2kiTQfsSmOdF9YJ8VTRdYW0l0fQbqL5JikVhaYeX85cpq Z3iA/PPJpfPtJw8g5jJOAROVAvxydMZXQYxyIBMV4HNG3qir44YnyfmJXkBtRFYWdxBc7bQp oZSZjzCCAz8wggKooAMCAQICAQ0wDQYJKoZIhvcNAQEFBQAwgdExCzAJBgNVBAYTAlpBMRUw EwYDVQQIEwxXZXN0ZXJuIENhcGUxEjAQBgNVBAcTCUNhcGUgVG93bjEaMBgGA1UEChMRVGhh d3RlIENvbnN1bHRpbmcxKDAmBgNVBAsTH0NlcnRpZmljYXRpb24gU2VydmljZXMgRGl2aXNp b24xJDAiBgNVBAMTG1RoYXd0ZSBQZXJzb25hbCBGcmVlbWFpbCBDQTErMCkGCSqGSIb3DQEJ ARYccGVyc29uYWwtZnJlZW1haWxAdGhhd3RlLmNvbTAeFw0wMzA3MTcwMDAwMDBaFw0xMzA3 MTYyMzU5NTlaMGIxCzAJBgNVBAYTAlpBMSUwIwYDVQQKExxUaGF3dGUgQ29uc3VsdGluZyAo UHR5KSBMdGQuMSwwKgYDVQQDEyNUaGF3dGUgUGVyc29uYWwgRnJlZW1haWwgSXNzdWluZyBD QTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEAxKY8VXNV+065yplaHmjAdQRwnd/p/6Me 7L3N9VvyGna9fww6YfK/Uc4B1OVQCjDXAmNaLIkVcI7dyfArhVqqP3FWy688Cwfn8R+RNiQq E88r1fOCdz0Dviv+uxg+B79AgAJk16emu59l0cUqVIUPSAR/p7bRPGEEQB5kGXJgt/sCAwEA AaOBlDCBkTASBgNVHRMBAf8ECDAGAQH/AgEAMEMGA1UdHwQ8MDowOKA2oDSGMmh0dHA6Ly9j cmwudGhhd3RlLmNvbS9UaGF3dGVQZXJzb25hbEZyZWVtYWlsQ0EuY3JsMAsGA1UdDwQEAwIB BjApBgNVHREEIjAgpB4wHDEaMBgGA1UEAxMRUHJpdmF0ZUxhYmVsMi0xMzgwDQYJKoZIhvcN AQEFBQADgYEASIzRUIPqCy7MDaNmrGcPf6+svsIXoUOWlJ1/TCG4+DYfqi2fNi/A9BxQIJNw PP2t4WFiw9k6GX6EsZkbAMUaC4J0niVQlGLH2ydxVyWN3amcOY6MIE9lX5Xa9/eH1sYITq72 6jTlEBpbNU1341YheILcIRk13iSx0x1G/11fZU8xggNkMIIDYAIBATB2MGIxCzAJBgNVBAYT AlpBMSUwIwYDVQQKExxUaGF3dGUgQ29uc3VsdGluZyAoUHR5KSBMdGQuMSwwKgYDVQQDEyNU aGF3dGUgUGVyc29uYWwgRnJlZW1haWwgSXNzdWluZyBDQQIQbZOR8X/3dLH0sJ+2vLUPdjAJ BgUrDgMCGgUAoIIBwzAYBgkqhkiG9w0BCQMxCwYJKoZIhvcNAQcBMBwGCSqGSIb3DQEJBTEP Fw0wODA2MTExMzQ5MzhaMCMGCSqGSIb3DQEJBDEWBBTuPvWoDlUn2buLymMwCL4YACx7VTBS BgkqhkiG9w0BCQ8xRTBDMAoGCCqGSIb3DQMHMA4GCCqGSIb3DQMCAgIAgDANBggqhkiG9w0D AgIBQDAHBgUrDgMCBzANBggqhkiG9w0DAgIBKDCBhQYJKwYBBAGCNxAEMXgwdjBiMQswCQYD VQQGEwJaQTElMCMGA1UEChMcVGhhd3RlIENvbnN1bHRpbmcgKFB0eSkgTHRkLjEsMCoGA1UE AxMjVGhhd3RlIFBlcnNvbmFsIEZyZWVtYWlsIElzc3VpbmcgQ0ECEG2TkfF/93Sx9LCftry1 D3YwgYcGCyqGSIb3DQEJEAILMXigdjBiMQswCQYDVQQGEwJaQTElMCMGA1UEChMcVGhhd3Rl IENvbnN1bHRpbmcgKFB0eSkgTHRkLjEsMCoGA1UEAxMjVGhhd3RlIFBlcnNvbmFsIEZyZWVt YWlsIElzc3VpbmcgQ0ECEG2TkfF/93Sx9LCftry1D3YwDQYJKoZIhvcNAQEBBQAEggEApFYE t9WGKI10PLdZO4bEm7SPjJV7IiHmVT3gpyfKqd4PlZ172e/21odIGwFRskQwzDvEg0NoSewd 6tj6QMIREIc0zHNz/EvKjq1rlGHcE/tqcrCwN+ZhOWurSi+VzByUCY9FQrsmt5kcVG5FiGvk H6CRqsbDcLN+/Vldo3kWQHMH07BXNoEIgBVot5RuEvcl1AL9Q3oUst9ekZ5imdi/7Ph05+GM NCJ1tw4uRQ6ZY0XuOeEObz8A7lRnbYT8k9t3qVavLwN3dzIFfZACoG6HGJPzWMzd1Pp2Vgvg vbS+9Ex1IDAfAeoR0vj7gTlInPaaa00MLF6RS7UOF2dfKLcSfgAAAAAAAA== --------------ms070908040006050907070205--