[BlueOnyx:18151] Changes in DNS logs since recent updates

blueonyxuser at gmail.com blueonyxuser at gmail.com
Mon Aug 10 22:19:36 -05 2015


Hello

We have a carrier supplied VPN behind our Firewall that we allow access to
BO to so that the devices can send emails but recently I have been seeing
log entries like;

Aug 11 06:53:07 networks named[31041]: client 127.0.0.1#35477: RFC 1918
response from Internet for 252.27.168.192.in-addr.arpa
Aug 11 06:53:08 networks named[31041]: error (network unreachable) resolving
'a.iana-servers.net/A/IN': 2001:500:8d::53#53
Aug 11 06:53:08 networks named[31041]: error (network unreachable) resolving
'a.iana-servers.net/A/IN': 2001:500:8c::53#53
Aug 11 06:53:10 networks named[31041]: error (network unreachable) resolving
domain.xx/AAAA/IN': 2x01:500:2c::1#53
Aug 11 06:53:10 networks named[31041]: error (network unreachable) resolving
domain.xx/AAAA/IN': 2x02:750:aaaa::2#53
Aug 11 06:53:10 networks named[31041]: error (network unreachable) resolving
domain.xx/A/IN': 2x02:750:aaaa::1#53

The device on the VPN is authenticating with a valid username/password on
the system.

If I DIG on the box there are no issues with the return for the domain.
 
So far my testing shows that the email does go out but there are a lot of
these entries in the logs and soon the logs will grow as we add a lot more
users.

Looking at various postings about this issue suggests that zone change files
need to have entries for private address space senders but that doesn't seem
to be an easy thing to do. can anyone suggest a solution?

System details are;

Kernel Version
2.6.32-220.7.1.el6.i686 (SMP) i686
Distro Name
CentOS release 6.7 (Final)

Tony




More information about the Blueonyx mailing list