Community Forums
Connect with us on LinkedIn
Community Notice
+ Reply to Thread
Results 1 to 5 of 5
  1. #1
    cPanel Partner NOC cPanel Partner NOC Badge DWHS.net's Avatar
    Join Date
    Jul 2002
    Location
    LA, Costa RIca
    Posts
    1,342

    Default DNS Reports showing major error on remote dns server

    WARNING: One or more of your DNS servers does not accept TCP connections. Although rarely used, TCP connections are occasionally used instead of UDP connections. When firewalls block the TCP DNS connections, it can cause hard-to-diagnose problems. The problem servers are:


    Anyone know what would cause this? I have three remote servers set up but one gives this error, I disabled the firewall and it still does it. Also it has the dns zones rom new accounts fine and show bind running fine.

    Can't see any errors on the server yet it keeps showing this.

  2. #2
    Member
    Join Date
    Sep 2004
    Posts
    887

    Default

    Quote Originally Posted by DWHS.net View Post
    WARNING: One or more of your DNS servers does not accept TCP connections. Although rarely used, TCP connections are occasionally used instead of UDP connections. When firewalls block the TCP DNS connections, it can cause hard-to-diagnose problems. The problem servers are:


    Anyone know what would cause this? I have three remote servers set up but one gives this error, I disabled the firewall and it still does it. Also it has the dns zones rom new accounts fine and show bind running fine.

    Can't see any errors on the server yet it keeps showing this.
    you likely wont see any errors on the server... it'll probably neve generate errors itself. But it sounds like TCP 53 is not open to that server, from the website that is doing the checking.

    On the server in question you should be able to do a netstat and see if its active:
    netstat -an|grep tcp|grep :53

    tcp 0 0 xxx.xxx.xx.xxx:53 0.0.0.0:* LISTEN
    tcp 0 0 xxx.xxx.xx.xxx:53 0.0.0.0:* LISTEN
    tcp 0 0 127.0.0.1:53 0.0.0.0:* LISTEN

    And you should be able to telnet port 53 of that server and get a connection established (quite a non-useful connection, but a connection nonetheless). If you get a connection refused, then TCP 53 isn't active on that IP. If you dont get an established connection but instead it times out, a firewall somewhere is the culprit.

    Mike

  3. #3
    cPanel Partner NOC cPanel Partner NOC Badge DWHS.net's Avatar
    Join Date
    Jul 2002
    Location
    LA, Costa RIca
    Posts
    1,342

    Default

    Thanks Mike, I get this from that command:

    tcp 0 0 127.0.0.1:53 0.0.0.0:* LISTEN

    Should it lists the ip's as well?

  4. #4
    Member
    Join Date
    Sep 2004
    Posts
    887

    Default

    Quote Originally Posted by DWHS.net View Post
    Thanks Mike, I get this from that command:

    tcp 0 0 127.0.0.1:53 0.0.0.0:* LISTEN

    Should it lists the ip's as well?
    Yeah it should. I don't know if your Listen-On stanza only has 127.0.0.1 in iti, or if there is some other directive that is eluding me that may be in your named.conf and causing it not to listen.

    If you want to post the first bunch of lines of your named.conf (and obscure your actual IPs if they are in there), we can tell you. We don't need any of the 'zone' lines that list the domains you are authoritative for.

    Are you running CentOS 5.0 ro RHEL 5 (if there is such a best) - you know, the latest greatest redhat-based?

    MIke

  5. #5
    cPanel Partner NOC cPanel Partner NOC Badge DWHS.net's Avatar
    Join Date
    Jul 2002
    Location
    LA, Costa RIca
    Posts
    1,342

    Default

    Quote Originally Posted by mtindor View Post
    Yeah it should. I don't know if your Listen-On stanza only has 127.0.0.1 in iti, or if there is some other directive that is eluding me that may be in your named.conf and causing it not to listen.

    If you want to post the first bunch of lines of your named.conf (and obscure your actual IPs if they are in there), we can tell you. We don't need any of the 'zone' lines that list the domains you are authoritative for.

    Are you running CentOS 5.0 ro RHEL 5 (if there is such a best) - you know, the latest greatest redhat-based?

    MIke
    Actually I added the ip's in the cpanel add ip tool, then rebooted and now it doesn't show the error. Thanks again.

Similar Threads & Tags
Similar threads

  1. Detailed DNS reports in WHM?
    By brendonhatcher in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 10-06-2010, 11:51 AM
  2. Remote Dns Server Ip
    By PedFraser-db1 in forum New User Questions
    Replies: 3
    Last Post: 08-19-2009, 03:57 PM
  3. [Broken DNS server: Reports a server failure]
    By Biotron2000 in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 10-31-2008, 02:32 PM
  4. OT: but what do you guys use for dns reports?
    By noimad1 in forum cPanel and WHM Discussions
    Replies: 8
    Last Post: 04-21-2008, 03:10 PM
  5. [Broken DNS server: Reports a server failure]
    By dwykofka in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 06-23-2007, 12:57 AM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube