Reverse Lookup Zones

R

Ray Lewis

I'm getting the following warning pertaining to lsasvr:

The Security System could not establish a secured connection with the server
DNS/prisoner.iana.org. No authentication protocol was available.

I've read numerous posts and it seems that the problem is my reverse lookup
zone. How do I tell if it, and my mail pointers are configured correctly?
the DNS looks like this.

Reverse lookup zones
-xx#.xx#.xx#.X Subnet
- (same as parent folder) NS name.domain.com
- xx#.xx#.xx#.xx# PTR mail.domain.com
- (same as parent) SOA [#], name.domain.com,
hostmaster.name.com
 
S

Simon Geary

This is the blackhole server for the private 192.168.0.0 subnet. What is
probably happening is something on your network is doing a reverse lookup on
a 192.168.0.0 address and your internal DNS server cannot give an answer and
so punts the query off to the Internet. As there should be no private
addresses on the Internet it goes to the blackhole servers. Do you have a
reverse lookup zone for 192.168.0.0?
 
R

Ray Lewis

I have a reverse lookup for my external IP's......but I don't have one for
my internal IP's.....

--
Wack
----
This message will self destruct.
Simon Geary said:
This is the blackhole server for the private 192.168.0.0 subnet. What is
probably happening is something on your network is doing a reverse lookup on
a 192.168.0.0 address and your internal DNS server cannot give an answer and
so punts the query off to the Internet. As there should be no private
addresses on the Internet it goes to the blackhole servers. Do you have a
reverse lookup zone for 192.168.0.0?

Ray Lewis said:
I'm getting the following warning pertaining to lsasvr:

The Security System could not establish a secured connection with the
server
DNS/prisoner.iana.org. No authentication protocol was available.

I've read numerous posts and it seems that the problem is my reverse
lookup
zone. How do I tell if it, and my mail pointers are configured correctly?
the DNS looks like this.

Reverse lookup zones
-xx#.xx#.xx#.X Subnet
- (same as parent folder) NS name.domain.com
- xx#.xx#.xx#.xx# PTR mail.domain.com
- (same as parent) SOA [#], name.domain.com,
hostmaster.name.com
 
S

Simon Geary

That's probably the cause then. If you have a client trying to do reverse
lookups on those internal 192.168 addresses and you don't have a reverse
zone for them they will be sent to the black hole servers.

Ray Lewis said:
I have a reverse lookup for my external IP's......but I don't have one for
my internal IP's.....

--
Wack
----
This message will self destruct.
Simon Geary said:
This is the blackhole server for the private 192.168.0.0 subnet. What is
probably happening is something on your network is doing a reverse lookup on
a 192.168.0.0 address and your internal DNS server cannot give an answer and
so punts the query off to the Internet. As there should be no private
addresses on the Internet it goes to the blackhole servers. Do you have a
reverse lookup zone for 192.168.0.0?

Ray Lewis said:
I'm getting the following warning pertaining to lsasvr:

The Security System could not establish a secured connection with the
server
DNS/prisoner.iana.org. No authentication protocol was available.

I've read numerous posts and it seems that the problem is my reverse
lookup
zone. How do I tell if it, and my mail pointers are configured correctly?
the DNS looks like this.

Reverse lookup zones
-xx#.xx#.xx#.X Subnet
- (same as parent folder) NS name.domain.com
- xx#.xx#.xx#.xx# PTR mail.domain.com
- (same as parent) SOA [#], name.domain.com,
hostmaster.name.com
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top