Reverse Lookup Zones

  • Thread starter Thread starter Ray Lewis
  • Start date Start date
R

Ray Lewis

I'm getting the following warning pertaining to lsasvr:

The Security System could not establish a secured connection with the server
DNS/prisoner.iana.org. No authentication protocol was available.

I've read numerous posts and it seems that the problem is my reverse lookup
zone. How do I tell if it, and my mail pointers are configured correctly?
the DNS looks like this.

Reverse lookup zones
-xx#.xx#.xx#.X Subnet
- (same as parent folder) NS name.domain.com
- xx#.xx#.xx#.xx# PTR mail.domain.com
- (same as parent) SOA [#], name.domain.com,
hostmaster.name.com
 
This is the blackhole server for the private 192.168.0.0 subnet. What is
probably happening is something on your network is doing a reverse lookup on
a 192.168.0.0 address and your internal DNS server cannot give an answer and
so punts the query off to the Internet. As there should be no private
addresses on the Internet it goes to the blackhole servers. Do you have a
reverse lookup zone for 192.168.0.0?
 
I have a reverse lookup for my external IP's......but I don't have one for
my internal IP's.....

--
Wack
----
This message will self destruct.
Simon Geary said:
This is the blackhole server for the private 192.168.0.0 subnet. What is
probably happening is something on your network is doing a reverse lookup on
a 192.168.0.0 address and your internal DNS server cannot give an answer and
so punts the query off to the Internet. As there should be no private
addresses on the Internet it goes to the blackhole servers. Do you have a
reverse lookup zone for 192.168.0.0?

Ray Lewis said:
I'm getting the following warning pertaining to lsasvr:

The Security System could not establish a secured connection with the
server
DNS/prisoner.iana.org. No authentication protocol was available.

I've read numerous posts and it seems that the problem is my reverse
lookup
zone. How do I tell if it, and my mail pointers are configured correctly?
the DNS looks like this.

Reverse lookup zones
-xx#.xx#.xx#.X Subnet
- (same as parent folder) NS name.domain.com
- xx#.xx#.xx#.xx# PTR mail.domain.com
- (same as parent) SOA [#], name.domain.com,
hostmaster.name.com
 
That's probably the cause then. If you have a client trying to do reverse
lookups on those internal 192.168 addresses and you don't have a reverse
zone for them they will be sent to the black hole servers.

Ray Lewis said:
I have a reverse lookup for my external IP's......but I don't have one for
my internal IP's.....

--
Wack
----
This message will self destruct.
Simon Geary said:
This is the blackhole server for the private 192.168.0.0 subnet. What is
probably happening is something on your network is doing a reverse lookup on
a 192.168.0.0 address and your internal DNS server cannot give an answer and
so punts the query off to the Internet. As there should be no private
addresses on the Internet it goes to the blackhole servers. Do you have a
reverse lookup zone for 192.168.0.0?

Ray Lewis said:
I'm getting the following warning pertaining to lsasvr:

The Security System could not establish a secured connection with the
server
DNS/prisoner.iana.org. No authentication protocol was available.

I've read numerous posts and it seems that the problem is my reverse
lookup
zone. How do I tell if it, and my mail pointers are configured correctly?
the DNS looks like this.

Reverse lookup zones
-xx#.xx#.xx#.X Subnet
- (same as parent folder) NS name.domain.com
- xx#.xx#.xx#.xx# PTR mail.domain.com
- (same as parent) SOA [#], name.domain.com,
hostmaster.name.com
 
Back
Top