This is a discussion on Re: dns query id not changing within the Bind Users forums, part of the DNS and Related Forums category; > Hello, > > I am experiencing an issue on redhat 8 with the resolver where the > "Transaction ...
|
|||||||
| FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
|
|||
|
> Hello, > > I am experiencing an issue on redhat 8 with the resolver where the > "Transaction ID" in the dns query is not changing. This is causing our > firewall to drop packets b/c a second dns request is coming in with the > same udp port, ip, and transaction id. The firewall still has the > first dns request in its state table and is causing the firewall to > drop the susequent packets due to this. > > Has anyone encountered this issue (possibly the resolver in glibc 2.2?) > and know if there is a workaround? > > thanks > adam Get a decent firewall. The transaction ID is allowed (expected) to be the same on retries of an query. A firewall which blocks this is broken. -- Mark Andrews, ISC 1 Seymour St., Dundas Valley, NSW 2117, Australia PHONE: +61 2 9871 4742 INTERNET: Mark_Andrews@isc.org |