From owner-freebsd-isp@FreeBSD.ORG Tue Jul 22 07:53:43 2003 Return-Path: Delivered-To: freebsd-isp@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 72D5D37B401 for ; Tue, 22 Jul 2003 07:53:43 -0700 (PDT) Received: from smtp.internet.dk (smtp.internet.dk [194.19.140.25]) by mx1.FreeBSD.org (Postfix) with ESMTP id E59B843F75 for ; Tue, 22 Jul 2003 07:53:41 -0700 (PDT) (envelope-from leifn@neland.dk) Received: from gina (0x50c48aec.adsl-fixed.tele.dk [80.196.138.236]) (authenticated)h6MErPC02720; Tue, 22 Jul 2003 16:53:25 +0200 Message-ID: <020701c35061$02cb17e0$0e05a8c0@gina> From: "Leif Neland" To: "Adam Maloney" , "Ted Cabeen" References: Date: Tue, 22 Jul 2003 16:53:22 +0200 MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 6.00.2800.1158 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165 cc: freebsd-isp@freebsd.org cc: Evren Yurtesen Subject: Re: checking dns records from named.conf X-BeenThere: freebsd-isp@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Internet Services Providers List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 22 Jul 2003 14:53:43 -0000 ----- Original Message ----- From: "Adam Maloney" To: "Ted Cabeen" Cc: ; "Evren Yurtesen" Sent: Monday, July 21, 2003 8:27 PM Subject: Re: checking dns records from named.conf > I suppose you could "dig @yourresolver domain.org ns" - and let your > resolver do the recursion. That seems to give me the correct output for a > random .org... > It won't work if you use yourresolver, if it points to yournameserver, because you will only be checking against yourself. I'ts better to use a foreign nameserver, for instance your uplink/isp, or a friendly nameserver somewhere else. I use a perlscript with Big Brother, giving yellow alert when my nameserver disagrees with a foreign nameserver, and I know something is being redelegated. I have a # comment with the date in resolv.conf. Then when the change is finished, I change the # to a // comment. I get a red alert when my nameserver(s) disagrees with the foreign nameserver, and I haven't a # comment, i.e. the change is not supposed to happen. Btw, I _never_ delete a domain from resolv.conf, I just comment it out, with a date and reason, to keep the history somewhere. Another BigBrother script checks if the domains in sendmail.cw, also has the mailserver as lowest MX. Leif