Questions tagged [domain-name-system]
The Domain Name System, usually referred to by the acronym DNS, is a hierarchical, distributed database where the keys are domain names. Questions involving publicly accessible domains should include the real, Fully Qualified Domain Name (FQDN)
12,576 questions
0 votes
0 answers
94 views
Domain blocked on Airtel & Jio DNS but works on other ISPs and public DNS
We recently re-launched our website and migrated it from an old Firebase project to a new Firebase project. Details: Domain: farefirst.com (existing domain, working for years) Registrar/DNS: GoDaddy ...
0 votes
1 answer
171 views
My LAN top level domain EdgeRouterX setting doesn't always work as expected
On my local network, I set the System domain-name in my EdgeRouterX to local. For most applications this seems to work fine. I can find a server by navigating to someservername.local, I can SSH into ...
3 votes
1 answer
330 views
Gmail 550 5.7.25 error: PTR record exists but Gmail says reverse DNS does not match sending IP
I’m sending email from my mail server to Gmail. Gmail rejects the message with the following error: 550 5.7.25 The IP address sending this message does not have a PTR record setup or the ...
0 votes
0 answers
17 views
Cannot access self hosted website (port 80/443) from same LAN network using domain name, works from outside or using LAN IP address [migrated]
I am unable to access my website when I am connected on same network. From outside anyone can access it with no problems. Provider: Vodafone with static IP address for business, all needed ports are ...
1 vote
2 answers
332 views
AD DNS update for Samba client works for initial registration, fails renewal refresh of record
We have a large AD domain with three Windows Server 2022 DCs. DNS registration and renewal works with Windows domain members. I do not have control over the DCs (although I can access them for ...
7 votes
2 answers
760 views
Domain Name Service (DNS) resolving Content Delivery Network (CDN) name
Prefix: Just to thank the people who answered, and to say that the deployment went fine, and the DNS changes took effect after the Time To Live (TTL) of 300 seconds in UK, Singapore and Australia, and ...
0 votes
0 answers
87 views
Support for CNAMEs in the pfSense DNS Resolver
Some background I have a home network built on a NetGate 1100 with pfSense. This has been running well for a couple of years with IPv4 only. I have upgraded it now to pfSense 25.07.1 With an IPv4 ...
0 votes
1 answer
171 views
How to forbid a domain to send emails? (Prevent spoofing.)
We have a few domains, which are not expected to send emails, therefore I would like to know if there is a way to effectively forbid those domains to send emails to prevent spoofing my company various ...
0 votes
1 answer
95 views
File uploads fail when outbound Internet is restricted to specific IP addresses [closed]
I have a CentOS 7 server where outbound Internet is restricted using iptables to specific external IP addresses. For example using Perplexity’s IP addresses: sudo iptables -A OUTPUT -d 104.18.26.48 -j ...
4 votes
0 answers
361 views
Postfix reverse DNS fails with DNSSEC resolver when there's a lame `in-addr.arpa` DNS zone delegation
I'm running Postfix 3.10 on an Ubuntu 24.04 server, with these settings in /etc/postfix/main.cf: smtpd_client_restrictions = # previous entries omitted for brevity warn_if_reject ...
-1 votes
2 answers
116 views
How to set DNS for incorporating Email to mail.domain.org as well as domain.org?
NOTE: I wanted to ask this on StackOverflow but they state that DNS questions must be programming related so this doesn't quite fit that bill. We have a bunch of domains on a server. Typical DNS for ...
2 votes
2 answers
287 views
Sudden issues with subdomain resolution to reserved IP
I've been hosting a static site via github for a few years on the domain shown. Recently I added a number of sub domains to reserved IPs on my network. s01.pixeloven.com d01.pixeloven.com w01....
1 vote
1 answer
89 views
Exchange Hybrid Split DNS
Our internal domain is domain.local, and external is domain.com. Typical split DNS situation. My question is how do people typically handle this? We are about to start our Exchange migration, and ...
0 votes
2 answers
93 views
Active Directory DNS - how to create internal records for accessing external web sites
I am trying to use Active Directory DNS to create "easier" to use URLs for staff. enroll.domain.org --> https://aka.ms/mysecurity reset.domain.org --> https://passwordreset....
0 votes
1 answer
191 views
What are the benefits of storing a hostname in a DNS NS record, instead of the IP?
This question builds on Why don't NS records contain IP addresses?. I understand that a domain nameserver - say ns1.com - stores NS records as mappings domain-to-hostname. If a client wants to get ...
0 votes
0 answers
67 views
DNS lookup fails even though an A record exists in Oracle Cloud DNS for it in the public zone
I have an OCI tenancy with a compute instance in the public subnet. I purchased a donraikes.com domain through godaddy.com. I associated donraikes.com with my tenancy by creating a public zone in the ...
1 vote
1 answer
95 views
Why does Apple have many PTR records and others have none? [closed]
I am investigating reverse DNS (PTR) records and how they are used today. For example stackoverflow.com resolves to 104.18.32.7 and that IP has zero PTR records (neither does the domain's other IP). ...
0 votes
0 answers
86 views
NetworkManager-run dnsmasq doesn't pickup upstream servers from .conf file
NetworkManager-run dnsmasq doesn't pickup upstream servers from .conf file if I remove dns= from NetworkManager connection config I am running WireGuard VPN server on a VPS and want to avoid DNS leaks ...
0 votes
1 answer
124 views
Unbound Cache Stats Not Increasing - still Showing Same Hits/Misses After Days
We configured Unbound on a RHEL-based server ( RHEL 7.9 ) to provide DNS caching. Here’s the relevant part of our /etc/unbound/unbound.conf: server: chroot: "" verbosity: 1 port: ...
1 vote
0 answers
98 views
How can I interpret the result of nslookup for a DNS Failure on Verizon IPv6 to mcr.micosoft.com?
Background Recently had an issue where some of our developers couldn't pull Docker images from mcr.microsoft.com. This happened over time, and sometimes when they changed locations. Finally narrowed ...
1 vote
0 answers
144 views
Intermittent nameserver (DNS lookup) failure using postfix/dovecot [closed]
Several months ago I reconfigured my server to dispense with PLESK (I never really used it, it was required by the server service, when they were bought out they didn't care anymore and it was ...
1 vote
1 answer
95 views
nTDS connections in the Lost and Found container in the Configuration container
There are nTDS connections in the Lost and Found container in the Configuration container. DC02 is a decommissioned server in lastKnownParent attribute. DC03 is a decommissioned server DC05 , DC01 is ...
2 votes
1 answer
268 views
dnsmasq: map a specific domain to the destination IP address of the incoming lookup query
I have dnsmasq and a Node server running on the same machine. The Node service's listening port is open to all interfaces (0.0.0.0), and whenever dnsmasq receives a query for the domain associated ...
1 vote
1 answer
117 views
Postfix multihome not sending from IPv4
I've a server with both IPv4 and IPv6 interfaces. Postfix is multihome, one instance, named postfix, is IPv6 only, and another, named postfix-kupec, is ipv4 and ipv6. Here's an output from postconf: ...
3 votes
2 answers
345 views
Failed to remove Windows DNS Server Query Resolution Policy
Attempting to implement DnsServerQueryResolutionPolicy per: https://learn.microsoft.com/en-us/windows-server/networking/dns/deploy/primary-geo-location which worked fine in my POC. I implemented it ...
0 votes
1 answer
149 views
Cloudflare: The number of lookups on your SPF record exceed the allowed limit of 10. Need to add an A, AAAA, or CNAME record for www and root
Important Information Domain: futuremotion.studio Registrar: Namecheap DNS: Cloudflare Free Plan E-Mail: Google Workspace Hosting: I was previously set up with Namecheap hosting, but ...
2 votes
1 answer
119 views
google compute engine, how to add or change a DNS A record
We have several domains, one of which runs a google compute engine with DNS registered at godaddy but whose primary DNS server is at google. How does one manipulate the A records for a domain ...
0 votes
0 answers
57 views
DNS breaks periodically on virtual domain controller until vNIC is removed and re-added
Got a weird issue that I've been dealing with for a while and haven't been able to permanently fix. Got a virtual Windows Server 2016 domain controller and several other VMs running on a Server 2016 ...
11 votes
2 answers
972 views
Can you have a standard DNS record alongside wildcard one?
Example: sub1.example.com. -> 0.0.0.0 (A record) sub2.example.com. -> 0.0.0.1 (A record) *.example.com. -> 0.0.0.2 (A record) Is this a valid configuration? Will sub1 and sub2 point to .0 ...
0 votes
0 answers
36 views
Firebase Hosting custom subdomain via .web.app CNAME works on most networks but fails on specific corporate Wi-Fi
I have a Firebase Hosting site: https://app-name.web.app My DNS (managed through a third-party provider) points: app-name.example.com CNAME app-name.web.app This works fine on almost all networks, ...
0 votes
1 answer
217 views
Spamhaus Open Resolver error with own recursive dns
Doesn't the public Spamhaus work reliably anymore? I have multiple own recursive DNS setups on LAN/localhost without being open resolvers, and from time to time some lookups to zen.spamhaus.org ...
2 votes
1 answer
311 views
How to fix DNS issue for ... unable to get image '...': error during connect: Get "...": dial tcp: lookup docker on 8.8.8.8:53: no such host
I am aware of the several other posts about the error in the subject line, but those fixes haven't helped. My goal is to pull down containers and run/test them via Docker compose so I'm thinking a ...
1 vote
0 answers
88 views
DNS / email routing without DNS?
I posted a question about this yesterday but it was I guess the wrong question to be asking. I will explain the problem more clearly, in the hope that some bright individual has the answer we are ...
1 vote
2 answers
224 views
Can DNS records forward one email address to another email address?
We send some email through an SMTP server, which is our our MX record (server1.newsletter-domain.com). One specific recipient ([email protected]) - we do not want these emails sent by ...
2 votes
0 answers
68 views
Bind timing out querying for A/HTTPS record with large delay from authoritative
I have a setup where: client = x.y.36.152 recursive resolver + DoH server = x.y.36.153 authoritative DNS = x.y.36.150 TLS server = x.y.36.148 I’m running BIND9 as the recursive resolver on .153. I ...
0 votes
2 answers
189 views
reverse dns based filenames with rsyslog
On an Ubuntu 24.2 server I run rsyslog. Logfiles are automatically created based on reverse DNS; my intended operation. After an unscheduled reboot, some filenames were based on IP addresses. Quite ...
-1 votes
1 answer
185 views
DNS: How to route Russian traffic directly (1.2.3.4) and others via Cloudflare (5.6.7.8)?
I need to configure DNS so that: Users from Russia access example.com directly via IP 1.2.3.4 (no Cloudflare proxy). Users from other countries go through Cloudflare on IP 5.6.7.8. Can this be done ...
0 votes
0 answers
153 views
How to debug a DNS HTTPS record
I have an HTTPS DNS record for fanaka.pro, pointing at readthedocs.io. My zone file: fanaka.pro. 3600 IN HTTPS 0 readthedocs.io. fanaka.pro. 3600 IN NS ns1.desec.io. fanaka.pro. 3600 IN ...
0 votes
0 answers
116 views
Windows VPN client using OpenConnect does not resolve internal addresses
The internal corp.local DNS is not resolving and pinging via VPN on a Windows VPN client. There is a host machine on the local network running a Docker container with a VPN (oscerv) server inside. ...
0 votes
0 answers
61 views
Cisco Umbrella Forwarding Issue
I have configured Cisco Umbrella VA to handle DNS resolution for some domains, and I’ve set up conditional forwarding on my Domain Controller (DC) to forward queries for example.com to Google DNS (8.8....
0 votes
1 answer
94 views
Single reverse DNS zone for several forward BIND9
I have this bind9 settings: named.conf: include "/etc/bind/named.conf.options"; include "/etc/bind/named.conf.local"; named.conf.options: include "/etc/bind/rndc.key"; ...
0 votes
0 answers
41 views
Kubernetes pods not resolving with service.namespace subdomains
I am running 2 pods busybox and nginx in the namespace called webcn have exposed the nginx pod as a service i am trying to understand working of name resolution in kubernetes within a namespace from ...
0 votes
0 answers
75 views
Issue resolving IP with DNS delegation and multiple sub-domains
My team has a sub-domain from our company delegated to a Route53 zone, so we can manage the DNS entries for our own applications we develop. We have a setup where each application gets it's own AWS ...
1 vote
0 answers
186 views
Firebase hosting certificate issue on certain carriers
We are using firebase hosting with a custom domain for our application. No configuration there has changed, yet in the past few days we are getting reports that some people get an SSL certificate ...
1 vote
3 answers
185 views
New architecture design to improve DNS resilience
How server usually handles multiple IP after DNS query reply ? Round Robin: A common approach is for the client to cycle through the IP addresses in the order they are received (round robin) for ...
2 votes
1 answer
115 views
Separate nameservers for hosting and email?
I've only ever known domains to use a single set of nameservers (2 to 4 all from one DNS provider). I've just inherited a failed migration from a client who is now having email issues (a security ...
0 votes
2 answers
134 views
Changing host affects mail account, mail settings?
I have a domain that is configured to use the DNS servers of Cloudflare. Here are the DNS settings: Here are the Cloudflare settings: I want to change the host from easyhost.com(hostway.com) to ...
3 votes
2 answers
517 views
The need to define "Parent Zone" on DNSSEC when DNS system and website are on the same server [closed]
We have recently taken on various domains on a new Plesk Server from another webhost. Their zones were signed with DNSSEC which we have no experience of. We have been receiving automated emails about ...
1 vote
2 answers
272 views
Spamhaus Error: excess volume in Postfix. False positive. Stuck
I am having this weird Postfix issue with Spamhaus excess volume error. First off I checked what the error suggested to check here I followed the instructions and changed my configuration as follows: ...
0 votes
0 answers
85 views
DNS Woes with Windows clients
Has anyone seen this issue before? So two DNS servers (Domain Controllers) via site-site VPN. with a client in a third location. The client can FQDN and hostname values for the servers.. Dcdiag shows ...