[Search for users] [Overall Top Noters] [List of all Conferences] [Download this site]

Conference noted::seal

Title:SEAL
Moderator:GALVIA::SMITH
Created:Mon Mar 21 1994
Last Modified:Fri Jun 06 1997
Last Successful Update:Fri Jun 06 1997
Number of topics:1989
Total number of notes:8209

1912.0. "DNS reverse mapping problem or not?" by BACHUS::DOBBENI () Thu Apr 10 1997 06:05

Hello,

After debugging DNS problems on a AVFWU system at a customer side I remarked a
strange reverse mapping file. 
e.g. 		      red net
			|
			|194.229.149.100
			|
		   -------------
		   |           |
		   | Firewall  |
		   |           |
		   -------------
			|
			| 172.20.1.6
			|
		      blue net

			
In this case the /etc/namedb/149.229.194.zone file si:

;
; AltaVista Firewall DNS address to names mapping file
;
@       IN      SOA     FIREWALL.gastec.nl.  root.FIREWALL.  (
                                1997032501      ; Serial
                                21600           ; Refresh
                                3600            ; Retry
                                604800          ; Expire
                                86400 )         ; Minimum
                IN      NS      FIREWALL.gastec.nl.
;
; Addresses point to canonical names
;
6.1     IN      PTR     FIREWALL.gastec.nl.

So this last line is putting the address of the blue net instead of the one of
the red net. I taught this was a misconfiguration, but apperently the GUI is
creatin this file this way. I checked this file on a number of other firewall
systems and found always the same thing, the address of the blue net in the file
for the red net.

Can somebody explain what is the reason for this and what are the possible
problems? OR... is this just a bug?

Mia Dobbeni
MCS Firewall Support
T.RTitleUserPersonal
Name
DateLines
1912.1CHEFS::zkodhcp-29-48-237.zko.dec.com::PITTGone with the winsock ...Fri Apr 18 1997 14:316
The DNS configuration files created by AFWU V2.1 GUI are absolutely
NEVER correct.  I haven't seen a single case where it will actually
work without editting the files.  I always set up through the GUI,
and then manually edit all the files ...

T
1912.2BIGUN::nessus.cao.dec.com::MayneA wretched hive of scum and villainyMon Apr 21 1997 22:304
I'll see Tony's "DNS config files are never correct", and raise him a 
"gated.conf is never correct".

PJDM