[BlueOnyx:20636] Re: DNS query refused for policy reasons

Michael Stauber mstauber at blueonyx.it
Thu Feb 9 13:05:02 -05 2017


Hi Felix,

> However, for this site it is not possible to do a DNS query or AXFR transfer. The response is:
> RCODE 5
> Refused - The name server refuses to perform the specified operation for policy reasons. 

The Standard-Configuration of Bind on BlueOnyx doesn't allow AXFR
transfers at all. These need to be specifically allowed for certain IP
addresses.

Please check in "Server Management" / "Network Services" / "DNS" in the
"Advanced" tab. Make sure the IP address of your secondary DNS server
are added to "Zone Transfer Access by IP Address (optional)".

If the IP is added there, then the 2ndary is allowed to poll your DNS
server for zone transfers via AXFR.

-- 
With best regards

Michael Stauber



More information about the Blueonyx mailing list