Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Administrators

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 11-10-2009, 12:54 PM
Junior Member
 
Posts: 8
Default [SOLVED] Zimbra queries old DNS server

How does one check to see what DNS servers Zimbra is point to?

We recently moved our Zimbra server into a DMZ from our LAN, and now we've noticed Zimbra trying to send DNS packets to a DNS server that was decommissioned.

The DNS server it's trying to reach was used during testing, but since Zimbra is in production now, we've switched to our production DNS servers. This was only noticed after dropped DNS packets addressed to the old server started showing up in the firewall logs. I checked the server, and the resolv.conf is correct.

I'm sure there is a way to do this, but I just haven't found it yet.


Server:
White Box, RHEL 5

Zimbra:
Network Edition 6.0.2
Reply With Quote
  #2 (permalink)  
Old 11-10-2009, 01:10 PM
y@w y@w is offline
Moderator
 
Posts: 658
Default

If you recently changed those name servers, you may have to bounce Zimbra. We changed DNS servers some time ago and I had to bounce all kinds of services (not just Zimbra) for all of the application/database servers to honor the new settings.
__________________
What a n00b!
Reply With Quote
  #3 (permalink)  
Old 11-10-2009, 01:24 PM
Junior Member
 
Posts: 8
Default

Hmm... I want to say it was rebooted when we upgraded it to 6.0.2, but I'm not sure. I'll have to try that when we do patching in the next couple of days.
Reply With Quote
  #4 (permalink)  
Old 11-10-2009, 01:39 PM
y@w y@w is offline
Moderator
 
Posts: 658
Default

Hmm well I suppose that would qualify as a restart of services

Are you sure it's Zimbra that's making the queries? Zimbra won't start if it can't resolve itself and would behave horribly if it was trying to use non-existent name servers..
__________________
What a n00b!
Reply With Quote
  #5 (permalink)  
Old 11-10-2009, 03:19 PM
Junior Member
 
Posts: 8
Default

Nevermind, it was nscd. It apparently has a bad habit of not clearing out old DNS servers.

11/10/2009 14:41:58.128NoticeNetwork AccessUDP packet droppedx.x.1.2, 43485, X2, zimbra.domain.orgx.x.0.30, 53, X0UDP DNS (Name Service) UDP12 (DMZ->LAN)

Above is the error, I was getting (anonymized of course). A quick run of netstat -vp --udp revealed it was nscd sending the DNS requests. Running nscd -i hosts to flush out the host cache seems to have done the trick.

Sorry about wasting your time and cluttering up the board. Thanks for the responses though!

Netstat:
Active Internet connections (w/o servers)
Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name
udp 0 0 zimbra.domain.org:52561 x.x.0.30:domain ESTABLISHED 2579/nscd
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.