Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 9 Jul 2012 23:23:05 +0100
From:      Mark Blackman <mark@exonetric.com>
To:        =?iso-8859-1?Q?Dag-Erling_Sm=F8rgrav?= <des@des.no>
Cc:        "Bjoern A. Zeeb" <bzeeb-lists@lists.zabbadoz.net>, Doug Barton <dougb@FreeBSD.org>, Avleen Vig <avleen@gmail.com>, Garrett Wollman <wollman@bimajority.org>, FreeBSD Hackers <freebsd-hackers@freebsd.org>
Subject:   Re: Replacing BIND with unbound
Message-ID:  <86885338-37D1-47FE-8DC6-45E9B4B806D7@exonetric.com>
In-Reply-To: <863950mw53.fsf@ds4.des.no>
References:  <CA%2BQLa9B-Dm-=hQCrbEgyfO4sKZ5aG72_PEFF9nLhyoy4GRCGrA@mail.gmail.com> <4FF2E00E.2030502@FreeBSD.org> <86bojxow6x.fsf@ds4.des.no> <89AB703D-E075-4AAC-AC1B-B358CC4E4E7F@lists.zabbadoz.net> <4FF8C3A1.9080805@FreeBSD.org> <20472.51031.308284.775990@hergotha.csail.mit.edu> <4FF8C890.9030408@FreeBSD.org> <CAMjP1KmVDJuKw09UFXb2M6QaL1dD1ocSjMOZLtjKiYFYoF9f4Q@mail.gmail.com> <4FFA7174.7050604@FreeBSD.org> <CAMjP1K=MahXEgHM-gKHFfDpQRDXY_0LGTn0JEE0Zm43%2Bh5jfPA@mail.gmail.com> <4FFA7980.4000707@FreeBSD.org> <CAMjP1K=b8mwqe31m=OqjUV%2BF=B85L4vpfT%2BDj00a1voPB-8TwA@mail.gmail.com> <D49E4B08-AC64-48C0-B918-94A7E30AB981@exonetric.com> <4FFB46A4.5050504@FreeBSD.org> <1E29121E-62B1-4929-BB7B-4FCA5D893F51@exonetric.com> <86a9z8mxa1.fsf@ds4.des.no> <8D942592-3662-4FBA-BA61-2A010452BF70@exonetric.com> <863950mw53.fsf@ds4.des.no>

next in thread | previous in thread | raw e-mail | index | archive | help
On 9 Jul 2012, at 23:01, Dag-Erling Sm=F8rgrav wrote:

> Mark Blackman <mark@exonetric.com> writes:
>> I never use '-t' with dig. drill *told* me I should use '-t' then
>> completely failed to acknowledge I had done so.
>>=20
>> Marks-Macbook% drill -t www.google.com
>> [...]
>> ;; WARNING: The answer packet was truncated; you might want to
>> ;; query again with TCP (-t argument), or EDNS0 (-b for buffer size)
>=20
> So you got a truncated response and used -t, it didn't help, and drill
> printed the boilerplate warning message that it always prints when it
> gets a truncated response.  I don't know about you, but I would call
> that a cosmetic nit.
>=20
> Unless, of course, you had tcpdump running while you did this and it
> turns out that drill sent a UDP request in spite of -t?  It works fine
> (i.e. it uses UDP by default, and TCP when asked to) for me.

Yes, I worked out it was boilerplate for the general condition. A =
cosmetic
nit that makes me do a double-take on my first usage strikes me as=20
rough around the edges. YMMV. drill certainly looks like a drop-in=20
replacement for the common case as you suggest. But if it's not called
'dig' and I've never heard of 'drill', I'm unlikely to reach for =
'drill',
hence the alias suggestion.  I *had* never heard of 'drill' until
this thread came up.

> FWIW, the reply I got was not truncated.  Perhaps there is a =
transparent
> DNS proxy somewhere between you and 178.250.72.130 - quite common with
> broadband CPE.

I have detected there is some kind of stealth DNS interception at work
in the past, although I think it's more central than the CPE.

Mark=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?86885338-37D1-47FE-8DC6-45E9B4B806D7>