Community discussions

MikroTik App
 
idelac3
just joined
Topic Author
Posts: 19
Joined: Mon Sep 25, 2006 12:16 pm

DNS problem

Sun Feb 10, 2008 2:08 pm

As some of you noticed, there are some problems with DNS cache service. I use v.2.9.27 and it stops working after few minutes:
http://forum.mikrotik.com/viewtopic.php?f=1&t=18006

Perhaps someone is poisoning DNS service when router has public ip.
 
User avatar
Chupaka
Forum Guru
Forum Guru
Posts: 8709
Joined: Mon Jun 19, 2006 11:15 pm
Location: Minsk, Belarus
Contact:

Re: DNS problem

Mon Feb 11, 2008 12:16 am

maybe this problem is fixed in 2.9.28, or later? ;) update your software
 
bugino
newbie
Posts: 29
Joined: Tue Aug 08, 2006 12:05 am

Re: DNS problem

Mon Feb 11, 2008 9:30 am

I have the same problem. Using 2.9.50

Upgrade to 3.2 doesnt help. Dont know what to DO !!!

see http://forum.mikrotik.com/viewtopic.php?f=2&t=21452
 
User avatar
normis
MikroTik Support
MikroTik Support
Posts: 26385
Joined: Fri May 28, 2004 11:04 am
Location: Riga, Latvia

Re: DNS problem

Mon Feb 11, 2008 10:30 am

you can use firewall to filter networks which can access your DNS service. Regarding the problem - please write to support with detailed description and a supout.rif file. We will try to repeat and fix it.
 
idelac3
just joined
Topic Author
Posts: 19
Joined: Mon Sep 25, 2006 12:16 pm

Re: DNS problem

Mon Feb 11, 2008 8:28 pm

you can use firewall to filter networks which can access your DNS service. Regarding the problem - please write to support with detailed description and a supout.rif file. We will try to repeat and fix it.
That's what I thought. I'll use firewall and prevent external access to DNS service. I think there's no bug in DNS, but there're some problems when DNS is overloaded with requests.
 
bugino
newbie
Posts: 29
Joined: Tue Aug 08, 2006 12:05 am

Re: DNS problem

Wed Feb 13, 2008 11:55 pm

no, there is serious bug in DNS service in MT. Why is it so difficult to find that bug? noone is able to give me advice and answer. I sent supout file, but i only get answer to use "redirect" instead of dst-nat. But I would like to use DNS cache service like in past time. Is it possible, when I set my router to default and agains set it, it will be working?

thanks for reaction.
 
User avatar
fx242
just joined
Posts: 16
Joined: Wed Jan 23, 2008 6:22 pm

Re: DNS problem

Mon Feb 18, 2008 8:46 pm

I was convinced that there was some bug in DNS cache server too.
Tired of weird random DNS misbehavior, i've started to sniff some traffic and voila, i was simply being dumb from the beginning: Every DNS query that was over the 512 byte limit cannot be transfered using normal UDP DNS packets. It MUST use TCP communication with the name server instead, or the name will never resolve. So, the dumb part was that my firewall rules were blocking direct access to TCP port 53 on the router... Now everything seems to be normal again!

TL

Who is online

Users browsing this forum: GoogleOther [Bot], rspott and 229 guests