From owner-freebsd-questions@freebsd.org Wed Jul 7 19:34:05 2021 Return-Path: Delivered-To: freebsd-questions@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id 0AFAA65AF6B for ; Wed, 7 Jul 2021 19:34:05 +0000 (UTC) (envelope-from 93ab.82.c37800001326ce.bdaa31b70fa77f3292d3045f5548cb0d@email-od.com) Received: from s1-b515.socketlabs.email-od.com (s1-b515.socketlabs.email-od.com [142.0.181.21]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4GKqNp5pkkz4pmt for ; Wed, 7 Jul 2021 19:34:02 +0000 (UTC) (envelope-from 93ab.82.c37800001326ce.bdaa31b70fa77f3292d3045f5548cb0d@email-od.com) X-Thread-Info: OTNhYi4xMi5jMzc4MDAwMDEzMjZjZS5mcmVlYnNkLXF1ZXN0aW9ucz1mcmVlYnNkLm9yZw== Received: from r4.h.in.socketlabs.com (s1-b40f.socketlabs.email-od.com [142.0.180.15]) by mxh4.email-od.com with ESMTP(version=Tls12 cipher=Aes256 bits=256); Wed, 7 Jul 2021 15:33:46 -0400 Received: from oceanview.tundraware.com (oceanview.tundraware.com [45.55.60.57]) by r4.h.in.socketlabs.com with ESMTP(version=Tls12 cipher=Aes256 bits=256); Wed, 7 Jul 2021 15:33:46 -0400 Received: from [192.168.0.2] (ozzie.tundraware.com [75.145.138.73]) (authenticated bits=0) by oceanview.tundraware.com (8.16.1/8.16.1) with ESMTPSA id 167JXdcL066286 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128 verify=NO) for ; Wed, 7 Jul 2021 14:33:39 -0500 (CDT) (envelope-from tundra@tundraware.com) To: FreeBSD Mailing List From: Tim Daneliuk Subject: Help With bind Debug Messages Message-ID: Date: Wed, 7 Jul 2021 14:33:34 -0500 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:78.0) Gecko/20100101 Thunderbird/78.11.0 MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Language: en-US Content-Transfer-Encoding: 7bit X-Greylist: Sender succeeded SMTP AUTH, not delayed by milter-greylist-4.6.4 (oceanview.tundraware.com [45.55.60.57]); Wed, 07 Jul 2021 14:33:40 -0500 (CDT) X-TundraWare-MailScanner-Information: Please contact the ISP for more information X-TundraWare-MailScanner-ID: 167JXdcL066286 X-TundraWare-MailScanner: Found to be clean X-TundraWare-MailScanner-SpamCheck: not spam (whitelisted), SpamAssassin (not cached, score=-2.9, required 6, autolearn=not spam, ALL_TRUSTED -1.00, BAYES_00 -1.90) X-TundraWare-MailScanner-From: tundra@tundraware.com X-Spam-Status: No X-Rspamd-Queue-Id: 4GKqNp5pkkz4pmt X-Spamd-Bar: --- X-Spamd-Result: default: False [-3.70 / 15.00]; RCVD_VIA_SMTP_AUTH(0.00)[]; R_SPF_ALLOW(-0.20)[+ip4:142.0.176.0/20]; RCVD_COUNT_THREE(0.00)[4]; TO_DN_ALL(0.00)[]; DKIM_TRACE(0.00)[tundraware.com:+,email-od.com:+]; DMARC_POLICY_ALLOW(-0.50)[tundraware.com,reject]; NEURAL_HAM_SHORT(-1.00)[-1.000]; FORGED_SENDER(0.30)[tundra@tundraware.com,93ab.82.c37800001326ce.bdaa31b70fa77f3292d3045f5548cb0d@email-od.com]; RCVD_TLS_LAST(0.00)[]; RBL_DBL_DONT_QUERY_IPS(0.00)[142.0.181.21:from]; ASN(0.00)[asn:53658, ipnet:142.0.180.0/22, country:US]; MID_RHS_MATCH_FROM(0.00)[]; FROM_NEQ_ENVFROM(0.00)[tundra@tundraware.com,93ab.82.c37800001326ce.bdaa31b70fa77f3292d3045f5548cb0d@email-od.com]; ARC_NA(0.00)[]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; R_DKIM_ALLOW(-0.20)[tundraware.com:s=slkey,email-od.com:s=dkim]; FROM_HAS_DN(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; NEURAL_HAM_LONG(-1.00)[-1.000]; MIME_GOOD(-0.10)[text/plain]; MIME_TRACE(0.00)[0:+]; PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org]; RCPT_COUNT_ONE(0.00)[1]; SPAMHAUS_ZRD(0.00)[142.0.181.21:from:127.0.2.255]; RCVD_IN_DNSWL_NONE(0.00)[142.0.181.21:from]; MAILMAN_DEST(0.00)[freebsd-questions] X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 07 Jul 2021 19:34:05 -0000 I am running a master/slave bind 9.16.18 config on FreeBSD 11-Stable. This also implements split horizon for internal and external hosts. Periodically, the slave just stops properly resolving hosts properly, so I turned on debugging and could use some help understanding messages I am seeing. Could some kind soul explain the significance of the following (75.145.138.75 is the public IP of the DNS slave instance): 07-Jul-2021 14:28:01.666 security: debug 3: client @0x8045f9160 75.145.138.75#57747 (www.belkin.com): view internal: reset client 07-Jul-2021 14:19:01.556 security: debug 3: client @0x8045f9160 75.145.138.75#25797 (www.belkin.com): view internal: request failed: duplicate query