[Opendnssec-user] Signing large zone and .tmp file issue

刘硕 shuoleo at 126.com
Fri Jul 20 05:31:14 UTC 2012


Hi all,
I'm using 1.4.0a2, when I configured a zone to use adapter DNS and ran update all command, the log showed:
Jul 20 11:44:51 CST-BJ-104 ods-signerd: [adapter] read zone example4 from file input adapter /var/opendnsse 

And When I run ods-signer sign --all command, the other three small zones are signed and transfer to BIND successfully,but example4 zone file which is 20Mb seemed not signed and transferred at all
the log of opendnssec
Jul 20 11:58:07 CST-BJ-104 ods-signerd: [worker[3]] write zone example4
Jul 20 11:58:07 CST-BJ-104 ods-signerd: [adapter] write zone example4 serial 1342756663 to output file adapter /etc/opendnssec/addns.xml
Jul 20 11:58:13 CST-BJ-104 ods-signerd: [tools] unable to write zone example4: adapter failed (Assertion error)
Jul 20 11:58:13 CST-BJ-104 ods-signerd: [worker[3]] backoff task [configure] for zone example4 with 120 seconds


the log of hidden BIND
20-Jul-2012 12:15:21.642 zone example4/IN: refresh: unexpected rcode (REFUSED) from master 202.173.9.19#53 (source 0.0.0.0#0)
20-Jul-2012 12:15:21.642 zone example4/IN: Transfer started.
20-Jul-2012 12:15:21.642 transfer of 'example4/IN' from 202.173.9.19#53: connected using 202.173.9.18#49716
20-Jul-2012 12:15:21.643 transfer of 'example4/IN' from 202.173.9.19#53: failed while receiving responses: REFUSED
20-Jul-2012 12:15:21.643 transfer of 'example4/IN' from 202.173.9.19#53: Transfer completed: 0 messages, 0 records, 0 bytes, 0.001 secs (0 bytes/sec)
20-Jul-2012 12:16:52.153 zone example4/IN: refresh: retry limit for master 202.173.9.18#53 exceeded (source 0.0.0.0#0)
20-Jul-2012 12:16:52.153 zone example4/IN: Transfer started.
20-Jul-2012 12:16:52.153 transfer of 'example4/IN' from 202.173.9.18#53: failed to connect: connection refused
20-Jul-2012 12:16:52.153 transfer of 'example4/IN' from 202.173.9.18#53: Transfer completed: 0 messages, 0 records, 0 bytes, 0.001 secs (0 bytes/sec)


Sometimes I could find example4.axfr.tmp in the /var/opendnssec/tmp directory, but sometimes nothing is written to the directory about example4.

[root at CST-BJ-104:202.173.9.19 :/var/opendnssec/tmp]$ll
total 104
-rw-r--r-- 1 root root  9657 Jul 20 11:55 example2.axfr
-rw-r--r-- 1 root root 11546 Jul 20 11:55 example2.backup2
-rw-r--r-- 1 root root  9016 Jul 20 11:55 example2.ixfr
-rw-r--r-- 1 root root  9657 Jul 20 11:55 example3.axfr
-rw-r--r-- 1 root root 11546 Jul 20 11:55 example3.backup2
-rw-r--r-- 1 root root  7974 Jul 20 11:55 example3.ixfr
-rw-r--r-- 1 root root  9577 Jul 20 11:55 example.axfr
-rw-r--r-- 1 root root 11466 Jul 20 11:55 example.backup2
-rw-r--r-- 1 root root  9012 Jul 20 11:55 example.ixfr

Has anybody ever met such problems when signing large zones? 


Best regards,
Stuart
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.opendnssec.org/pipermail/opendnssec-user/attachments/20120720/9d817c67/attachment.htm>


More information about the Opendnssec-user mailing list