From owner-freebsd-questions@FreeBSD.ORG Mon Apr 10 15:49:31 2006 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id A803716A402 for ; Mon, 10 Apr 2006 15:49:31 +0000 (UTC) (envelope-from guru@Sisis.de) Received: from hunter.Sisis.de (hunter.sisis.de [193.31.11.194]) by mx1.FreeBSD.org (Postfix) with ESMTP id 8D7CE43D60 for ; Mon, 10 Apr 2006 15:49:28 +0000 (GMT) (envelope-from guru@Sisis.de) Received: (from mail@localhost) by hunter.Sisis.de (8.8.8/8.8.8) id RAA03990; Mon, 10 Apr 2006 17:47:06 +0200 (CEST) (envelope-from guru@Sisis.de) From: guru@Sisis.de Received: from ppp-82-135-94-42.mnet-online.de(82.135.94.42) by hunter.Sisis.de via smap (V2.1) id xma003984; Mon, 10 Apr 06 17:46:45 +0200 Received: (from guru@localhost) by rebelion.Sisis.de (8.13.4/8.13.4/Submit) id k3AFn3uj001145; Mon, 10 Apr 2006 17:49:03 +0200 (CEST) (envelope-from guru@Sisis.de) X-Authentication-Warning: rebelion.Sisis.de: guru set sender to guru@Sisis.de using -f Date: Mon, 10 Apr 2006 17:49:03 +0200 To: Alex Zbyslaw Message-ID: <20060410154903.GA1133@rebelion.Sisis.de> References: <20060410135448.GA10388@rebelion.Sisis.de> <443A6F64.70701@allenmyland.com> <20060410145154.GA11743@rebelion.Sisis.de> <443A74B6.20003@dial.pipex.com> Mime-Version: 1.0 Content-Type: text/plain; charset=iso-8859-1 Content-Disposition: inline Content-Transfer-Encoding: 8bit In-Reply-To: <443A74B6.20003@dial.pipex.com> User-Agent: Mutt/1.4.2.1i X-Operating-System: FreeBSD 6.0-RELEASE (i386) Cc: freebsd-questions@freebsd.org Subject: Re: /etc/resolv.conf with 3 nameservers X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: Matthias.Apitz@Sisis.de List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 10 Apr 2006 15:49:31 -0000 El día Monday, April 10, 2006 a las 04:07:34PM +0100, Alex Zbyslaw escribió: > guru@Sisis.de wrote: > > >El día Monday, April 10, 2006 a las 10:44:52AM -0400, Ken Stevenson > >escribió: > > > > > > > >>I think the problem is that once your first server responds with a > >>"domain not found", that's considered an answer to your query. It > >>doesn't try another DNS server just to see if it gets a different > >>answer. If you were to disable the DNS server on 10.0.1.201, then it > >>would use xxx.xxx.xxx.xxx or yyy.yyy.yyy.yyy to resolve the query. > >> > >> > > > >Yes, you're right. It is said in (...) that the fall down only works > >on timeout. I did not read carefully enough, stupid as I am. :-( > > > > > There's nothing to stop you configuring that local nameserver to use > your two "backups" for names that it cannot resolve. > > You could then leave the two backups in /etc/resolv.conf but if your > local nameserver is authoritative for your local domain, then you > probably want to know if it goes away, and those backups won't be able > to look up names in your local domain. > > I'm making some assumptions about why you set things up this way in the > first place, and I may be wrong, but there's too little info in your > post to give definitive suggestions. The anderlying problem is that we are three companies, now connected through VPN tunnels. Each company runs it's own DNS server internaly and without publicating all its names to Internet. The three DNS are 10.0.1.201 (mine one), xxx.xxx.xxx.xxx and yyy.yyy.yyy.yyy. Any idea? Yes, in the future we will unify the whole zone, but this is not a short term option... matthias -- Matthias Apitz / Sisis Informationssysteme GmbH ein Tochterunternehmen der OCLC PICA B.V. Leiden (NL) D-82041 Oberhaching, Gruenwalder Weg 28g Fon: +49 89 / 61308-351, Fax: -399, Mobile +49 170 4527211 http://www.sisis.de/~guru/