Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 10 Apr 2006 17:49:03 +0200
From:      guru@Sisis.de
To:        Alex Zbyslaw <xfb52@dial.pipex.com>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: /etc/resolv.conf with 3 nameservers
Message-ID:  <20060410154903.GA1133@rebelion.Sisis.de>
In-Reply-To: <443A74B6.20003@dial.pipex.com>
References:  <20060410135448.GA10388@rebelion.Sisis.de> <443A6F64.70701@allenmyland.com> <20060410145154.GA11743@rebelion.Sisis.de> <443A74B6.20003@dial.pipex.com>

next in thread | previous in thread | raw e-mail | index | archive | help
El día Monday, April 10, 2006 a las 04:07:34PM +0100, Alex Zbyslaw escribió:

> guru@Sisis.de wrote:
> 
> >El día Monday, April 10, 2006 a las 10:44:52AM -0400, Ken Stevenson 
> >escribió:
> >
> > 
> >
> >>I think the problem is that once your first server responds with a 
> >>"domain not found", that's considered an answer to your query. It 
> >>doesn't try another DNS server just to see if it gets a different 
> >>answer. If you were to disable the DNS server on 10.0.1.201, then it 
> >>would use xxx.xxx.xxx.xxx or yyy.yyy.yyy.yyy to resolve the query.
> >>   
> >>
> >
> >Yes, you're right. It is said in (...) that the fall down only works
> >on timeout. I did not read carefully enough, stupid as I am. :-(
> > 
> >
> There's nothing to stop you configuring that local nameserver to use 
> your two "backups" for names that it cannot resolve.
> 
> You could then leave the two backups in /etc/resolv.conf but if your 
> local nameserver is authoritative for your local domain, then you 
> probably want to know if it goes away, and those backups won't be able 
> to look up names in your local domain.
> 
> I'm making some assumptions about why you set things up this way in the 
> first place, and I may be wrong, but there's too little info in your 
> post to give definitive suggestions.

The anderlying problem is that we are three companies, now connected
through VPN tunnels. Each company runs it's own DNS server internaly and
without publicating all its names to Internet. The three DNS are
10.0.1.201 (mine one), xxx.xxx.xxx.xxx and yyy.yyy.yyy.yyy. 

Any idea? Yes, in the future we will unify the whole zone, but this is
not a short term option...

	matthias
-- 
Matthias Apitz / Sisis Informationssysteme GmbH
ein Tochterunternehmen der OCLC PICA B.V. Leiden (NL)
D-82041 Oberhaching, Gruenwalder Weg 28g
Fon: +49 89 / 61308-351, Fax: -399, Mobile +49 170 4527211
http://www.sisis.de/~guru/



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20060410154903.GA1133>