Re: [Exim] DNSsec records and exim

Αρχική Σελίδα
Delete this message
Reply to this message
Συντάκτης: Exim Users Mailing List
Ημερομηνία:  
Προς: Michael Richardson
Υ/ο: Exim Users Mailing List, aland
Αντικείμενο: Re: [Exim] DNSsec records and exim
[ On Sunday, September 16, 2001 at 19:34:55 (-0400), Michael Richardson wrote: ]
> Subject: Re: [Exim] DNSsec records and exim
>
> In fact, more basic. Missing '.' on MX record screwed things up.
> I added an MX for lox.sandelman.ottawa.on.ca when I started to suspect
> something was wrong. I will be removing it again tomorrow to see what
> happens.


If you are using that name in either MAIL FROM: or RCPT TO: parameters
you should probably keep an MX for it....

> And nox6 does have records:
>
> marajade-[~] mcr 1028 %host -t aaaa nox6
> nox6.sandelman.ottawa.on.ca has AAAA address 2002:c08b:2e21:3::6
> nox6.sandelman.ottawa.on.ca has AAAA address 2001:410:402:3::6
>
> That should not upset anyone.


I'm not so sure about that. Any mailer should looks for the A RR (not
AAAA) for every MX, and may complain if one is not found....

I don't know off the top of my head whether or not Exim is parsing its
own DNS records apart (Smail does for the most part), and if so then it
may be tripping over the same errors in the NXT record as 'host'
reports:

*** expand error in NXT record for lox.sandelman.ottawa.on.ca, offset 84
*** size error in NXT record for lox.sandelman.ottawa.on.ca, off by -36


BTW, those AAAA records are apparently not visible to the world either:

$ host -a lox6.sandelman.ottawa.on.ca nic.sandelman.ottawa.on.ca  
lox6.sandelman.ottawa.on.ca does not exist at nic.sandelman.ottawa.on.ca (Authoritative answer)
$ host -t aaaa lox6.sandelman.ottawa.on.ca nic.sandelman.ottawa.o
lox6.sandelman.ottawa.on.ca does not exist at nic.sandelman.ottawa.on.ca (Authoritative answer)
$ host -V                                                         
host version 991529




The other problem may be that one of your nameservers is down or unreachable:

$ host -C sandelman.ottawa.on.ca    
sandelman.ottawa.on.ca  NS      ns.flora.ottawa.on.ca
Nameserver ns.flora.ottawa.on.ca not responding
sandelman.ottawa.on.ca SOA record not found at ns.flora.ottawa.on.ca, try again
sandelman.ottawa.on.ca  NS      nic.sandelman.ottawa.on.ca
istari.sandelman.ottawa.on.ca   mcr.sandelman.ottawa.on.ca      (200109162 3600 900 3600000 3600)
 !!! sandelman.ottawa.on.ca SOA primary istari.sandelman.ottawa.on.ca is not advertised via NS


$ /sbin/ping ns.flora.ottawa.on.ca
PING ns.flora.ottawa.on.ca (209.195.78.66): 56 data bytes
^?
----ns.flora.ottawa.on.ca PING Statistics----
6 packets transmitted, 0 packets received, 100.0% packet loss

$ telnet ns.flora.ottawa.on.ca 53
Trying 209.195.78.66...
telnet: Unable to connect to remote host: Connection timed out



-- 
                            Greg A. Woods


+1 416 218-0098      VE3TCP      <gwoods@???>     <woods@???>
Planix, Inc. <woods@???>;   Secrets of the Weird <woods@???>