[9fans] Re: Pegasus 2.2 is released



cmu.edu is returning bogus results. dig from linux returns "connection
reset" on tcp and a truncated query on udp.

Weird--not for me (off campus and not particularly short-haul).

What I see with dig, straight at the 3 CMU.EDU servers, is a response
truncated due to "excessive" size (e.g., 779 bytes) and apparently-ok
responses via TCP. That is:

dig +tcp @t-ns2-sec.net.cmu.edu any cmu.edu
dig +tcp @cabbage.srv.cs.cmu.edu any cmu.edu
dig +tcp @t-ns1.net.cmu.edu any cmu.edu

If I ask my LinkSys, what I get back is 102 bytes--lots of stuff trimmed
out, apparently by speakeasy.net DNS servers.

Are the queries failing for you being made directly, or is there maybe
some issue involving an intermediate DNS server?

Thanks for letting me know something odd is going on...

Dave Eckhardt
.



Relevant Pages

  • bad mail.
    ... Checking external DNS servers. ... DNS server did not return a valid SOA record. ... Checking MX records using TCP: ... Checking remote domain records. ...
    (microsoft.public.inetserver.iis.smtp_nntp)
  • Re: dns woes
    ... # dig @ns1.3s1.com mylocaldomain.com ... DNS' primary protocol is UDP, telnet uses TCP. ...
    (freebsd-questions)
  • Re: DNS requests switch from UDP to TCP
    ... >> was switching UDP to TCP. ... > Normally your machine sends an UDP request to the server, ... > machine) then retries the request, this time using TCP. ... a common practice of protecting DNS servers is to ...
    (comp.os.linux.networking)
  • Re: DNS ACL ?
    ... I think that the backbone DNS servers and certain upstream DNS servers ... UDP packet it will switch to TCP. ... Audit your website security with Acunetix Web Vulnerability Scanner: ... Cross site scripting and other web attacks before hackers do! ...
    (Pen-Test)
  • Re: DNS connections on over TCP?
    ... > it possible for it to look up names over TCP as well??? ... My firewall is configured for a DNS ... > Bellow are single log from firewall and whois on destination. ... Normally DNS only uses TCP for a zone transfer between DNS servers. ...
    (comp.security.firewalls)