Project

General

Profile

Actions

Task #7630

closed

Cleanup the DNS64 situation

Added by Nico Schottelius about 4 years ago. Updated about 4 years ago.

Status:
Closed
Priority:
Normal
Target version:
-
Start date:
01/20/2020
Due date:
% Done:

0%

Estimated time:
PM Check date:

Description

Old situation

  • bind nameservers on routers decide based on source IPv6 address whether to give out NAT64 or not
  • Overlapping use (dual stack VM vs. IPv6 only) led to problems that the above rule does not apply strictly
  • This also led to problems when VMs with routed networks

Possible solution 1

  • Advise customers who need DNS64 generally to use unbound1.place6.ungleich.ch (2a0a:e5c0:2:12:0:f0ff:fea9:c451) and unbound2.place6.ungleich.ch (2a0a:e5c0:2:12:0:f0ff:fea9:c45d)

Other solutions

  • Remove overlapping networks (for future VMs)
  • Add broken VMs/IPs to the individual list of bind
Actions #1

Updated by Timothée Floure about 4 years ago

  • Status changed from New to Seen
Actions #3

Updated by Nico Schottelius about 4 years ago

  • Status changed from Feedback to Closed

Thanks!

writes:

Actions #4

Updated by ll nu about 4 years ago

What can we do about that the /etc/resolv.conf is rewritten at every reboot?
Would the best be to advise:
chattr +i /etc/resolv.conf
?

Actions #5

Updated by Nico Schottelius about 4 years ago

No. If somebody does not want that, they should remove the appropriate
script below /etc/one-contex.d

writes:

Actions

Also available in: Atom PDF