tracert to domain not working

lonerunner

Verified User
Joined
Nov 16, 2010
Messages
56
I believe this is DNS server settings problems.
I have dedicated server with DA installed on it but i cant see websites.

Im working whole day on this to see if it will work but no luck.

I as administrator of DA have one website in admin account and rest in client accounts, i set NS1 and NS2 but i set NS when i added all clients. When i try to go to my website it works but client websites dont.

i checked resolv.conf and there is everything fine

i set everything in DA on instructions from DA forum.

and when i try to do tracert from my server SSH to my website (on admin account) i get my nameservers address.

but when i try to tracert from my server SSH other websites on server (non on admin account, on users account) i get this

1 hosted.by.leaseweb.com (85.17.122.62) 0.297 ms 0.346 ms 0.442 ms
2 te0-1-0-1.ccr22.ams03.atlas.cogentco.com (149.6.129.85) 2.724 ms 2.951 ms 3.059 ms
3 te0-1-0-1.ccr22.fra03.atlas.cogentco.com (130.117.2.229) 9.784 ms 9.911 ms 10.013 ms
4 verio.fra03.atlas.cogentco.com (130.117.14.10) 10.671 ms 10.667 ms 10.662 ms
5 ae-0.r20.frnkge03.de.bb.gin.ntt.net (129.250.5.225) 10.179 ms 10.176 ms 10.171 ms
6 ae-0.r21.frnkge04.de.bb.gin.ntt.net (129.250.2.13) 10.256 ms 10.268 ms 10.201 ms
7 as-1.r23.amstnl02.nl.bb.gin.ntt.net (129.250.3.62) 15.248 ms 15.285 ms 9.425 ms
8 po-2.r01.amstnl02.nl.bb.gin.ntt.net (129.250.4.101) 15.254 ms 9.271 ms 9.274 ms
9 opendns-0.r01.amstnl02.nl.bb.gin.ntt.net (81.20.64.82) 9.694 ms 9.623 ms 9.655 ms
10 hit-servfail.opendns.com (67.215.66.132) 9.647 ms 9.194 ms 9.296 ms

is it possible that some dns is not updated still or i didnt set properly dns for other accounts.
it has been 3 days already, DNS should been refreshed.
 
Check that your firewall is open on port 53 for tcp and udp requests.

Type:

/sbin/service named restart

Then check /var/log/messages for any errors.

More than likely it is a firewall issue.
 
Check that your firewall is open on port 53 for tcp and udp requests.

Type:

/sbin/service named restart

Then check /var/log/messages for any errors.

More than likely it is a firewall issue.


I did this and i see same messages for all domains, there are 2 messages for every domain.
Sorry i cant copy log, im on mobile but here are messages for one domain

Hosting named [13102]: zone vld.rs/IN sending notifies (serial 20101119000)
This message is listed for all domains, only serial numers is changing.

After this first message i got this one:
Hosting named [13102]: client 85.17.122.1#57067 received notify for zone 'vld.rs'
 
Try:

Code:
echo "action=rewrite&value=named" >> /usr/local/directadmin/data/task.queue
/usr/local/directadmin/dataskq d

I dont know if vld.rs is your real domain or not but I when I do a whois on it it says its not registered.

Post a real domain that I can check with.

I dont really know what your errors means.
 
yes vld.rs is real domain name, website is up and running on server. when i go in browser to server_ip/~client_name i see website.


in registar i set to NS1 server ip address.

I think i found problem but dont know how to fix it.

Somehow i managed to open port 53 but it stayed open until next restart. On machine restart port is open for like 30 seconds and closed again.

What can cause problem, i dont know.
 
yes vld.rs is real domain name, website is up and running on server. when i go in browser to server_ip/~client_name i see website.


in registar i set to NS1 server ip address.

I think i found problem but dont know how to fix it.

Somehow i managed to open port 53 but it stayed open until next restart. On machine restart port is open for like 30 seconds and closed again.

What can cause problem, i dont know.

I even disabled firewall and still get port 53 is blocked
 
After searching whole night, only thing i can say is dns servers are not updated yet, because i really dont know what other thing can be wrong. Here are some more info

I checked iptables and port 53 is open and accepting connections (i dont know why but on server restart after 30 sec port is closed for few minutes, than open back again)

resolv.conf file has 4 nameservers set but i dont think this is problem
2 are from opendns, and 2 are from my host company dns.

when i connect to ssh to my server and do dig @localhost (or server ip) on any website on server i get this:

dig @localhost bivoda.co.rs

; <<>> DiG 9.3.6-P1-RedHat-9.3.6-4.P1.el5_4.2 <<>> @localhost bivoda.co.rs
; (1 server found)
;; global options: printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 13033
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 2, ADDITIONAL: 2

;; QUESTION SECTION:
;bivoda.co.rs. IN A

;; ANSWER SECTION:
bivoda.co.rs. 14400 IN A 85.17.122.1

;; AUTHORITY SECTION:
bivoda.co.rs. 14400 IN NS ns1.bankerinter.net.
bivoda.co.rs. 14400 IN NS ns2.bankerinter.net.

;; ADDITIONAL SECTION:
ns1.bankerinter.net. 14400 IN A 85.17.122.1
ns2.bankerinter.net. 14400 IN A 85.17.122.1

;; Query time: 0 msec
;; SERVER: 127.0.0.1#53(127.0.0.1)
;; WHEN: Sat Nov 20 14:38:15 2010
;; MSG SIZE rcvd: 129

As i know this is set properly ns1 and ns2 are bankerinter.net and on this ip.

but when i do dig @something_else (any dns server, for example nearest server is nscache1.leaseweb.net) i get this:

dig @nscache1.leaseweb.net bivoda.co.rs
; <<>> DiG 9.3.6-P1-RedHat-9.3.6-4.P1.el5_4.2 <<>> @nscache1.leaseweb.net bivoda.co.rs
; (2 servers found)
;; global options: printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: SERVFAIL, id: 40753
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 0

;; QUESTION SECTION:
;bivoda.co.rs. IN A

;; Query time: 69 msec
;; SERVER: 83.149.80.123#53(83.149.80.123)
;; WHEN: Sat Nov 20 15:00:03 2010
;; MSG SIZE rcvd: 30

Ok now strange part what i dont understand (try to follow me i will write confused)

when i go to intodns.com website and check bivoda.co.rs i get this
ns2.bankerinter.net. ['212.95.44.233'] (NO GLUE) [TTL=86400]
ns1.bankerinter.net. ['212.95.44.233'] (NO GLUE) [TTL=86400]
but this doesn't exist on that ip.

when i check bankerinter.net on intodns.com i get this

ns1.bankerinter.net. ['89.216.116.184'] [TTL=172800]
ns2.bankerinter.net. ['89.216.116.206'] [TTL=172800]
ns3.bankerinter.net. ['212.95.44.233'] [TTL=172800]
ns4.bankerinter.net. ['212.200.108.17'] [TTL=172800]

Ok now bankerinter.net website is working and its on ns3 which is on different server.

but bivoda.co.rs or vld.rs or other websites are not on that server and never been.

and that server actually use this ns:
ns1.vividdesigns.info ['212.95.44.233'] [TTL=86000]
ns2.vividdesigns.info ['212.95.44.233'] [TTL=86000]

In my registar i put this server ip (85.17.122.1) as ns1.bankerinter.net 3 days ago and still no changes.
And thats whats bothering me and confusing

Now in my server (85.17.122.1) where is DA on master account (admin) i added bankerinter.net website. and others all have user accounts with their websites. When i type in Firefox server_ip/~user_account all websites work. But not with website addresses.

In SSH when ping

bankerinter.net i get this

KKMQ001.local (85.17.122.1)

But when i ping all others, for example ping

bivoda.co.rs i get this

ping: unknown host bivoda.co.rs

Why bivoda.co.rs and all others dont get ping back like bankerinter.net ?
They are all on same server just on different accounts in DA

When i do tracert bankerinter.net i get again KKMQ001.local (85.17.122.1)

When i do tracert on any other website i get this
tracert bivoda.co.rs
bivoda.co.rs: Temporary failure in name resolution
Cannot handle "host" cmdline arg `bivoda.co.rs' on position 1 (argc 1)

Now lets go to dns administration in DA:

This are settings to all websites:

admin » DNS Administration » Entry for vld.rs
Name Type Value Select
ftp A 85.17.122.1
localhost A 127.0.0.1
mail A 85.17.122.1
pop A 85.17.122.1
smtp A 85.17.122.1
vld.rs. A 85.17.122.1
www A 85.17.122.1
vld.rs. NS ns1.bankerinter.net.
vld.rs. NS ns2.bankerinter.net.
mail MX 10
vld.rs. TXT "v=spf1 a mx ip4:85.17.122.1 ~all"

If anyone has any idea or understood what i wrote please help because i really dont know where to go further and what to do anymore.
 
Lets put some more info (settings from DA)

admin » Administrator Settings

Server Settings (will restart DirectAdmin)
Server's Hostname hosting.bankerinter.net
NS1 ns1.bankerinter.net
NS2 ns2.bankerinter.net

admin » IP Manager

IP Status Reseller User(s) Nameserver Netmask Select
85.17.122.1 server 62 ns1.bankerinter.net 255.255.255.192

This should be rdns or what (i found this on DA documentation and understood its for rdns)

admin » DNS Administration » Entry for 1.122.17.85.in-addr.arpa
Name Type Value Select
1.122.17.85.in-addr.arpa. NS ns1.bankerinter.net.
1.122.17.85.in-addr.arpa. NS ns2.bankerinter.net.
1.122.17.85.in-addr.arpa. PTR hosting.bankerinter.net.

This was old machine name before i changed in DA administration to hosting.bankerinter.net

admin » DNS Administration » Entry for KKMQ001.local
Name Type Value Select
KKMQ001.local. A 85.17.122.1
ftp A 85.17.122.1
localhost A 127.0.0.1
mail A 85.17.122.1
pop A 85.17.122.1
smtp A 85.17.122.1
www A 85.17.122.1
KKMQ001.local. NS ns1.KKMQ001.local.
KKMQ001.local. NS ns2.KKMQ001.local.
mail MX 10
KKMQ001.local. TXT "v=spf1 a mx ip4:85.17.122.1 ~all"
Do i need to delete this one or leave it ?
 
Any domain inding in local is totally immaterial to anything your server is doing when hosting.

The problem is that your domain vld.rs doesn't have nameswervers properly set up (probably at your registrar). To see the problem:
Code:
$ dig vld.rs +trace
Jeff
 
Hello,

With regards to the bivoda.co.rs domain, here are my findings.

1) I assume the 85.17.122.1 box is where everything lives, since that's what your local lookup is returning, so your box should be

2) However:
http://www.intodns.com/bivoda.co.rs

Returns:
Code:
Nameserver records returned by the parent servers are:

ns1.bankerinter.net.   ['212.95.44.233'] (NO GLUE)   [TTL=86400] 
ns2.bankerinter.net.   ['212.95.44.233'] (NO GLUE)   [TTL=86400]
which shows a few issues.
a) The 44.233 IPs are controlling your domain, but the domain's zone doesn't live there. It lives at the 122.1 IP. You'll need to do one of:
- Re-register those ns1/ns2 values to your own DA box so they resolve
or
- Add the zone to the 44.233 box, but that would make maintaining it more difficult
or
- Add an ns3/ns4 value to resolve to your 122.1 box, in case you're using the 44.233 nameservers for other lives domains already.

b) they don't resolve (the "NO GLUE" bit). That means there are no "A" records for ns1 and ns2 on the bankerinter.net zone.

3) I checked the bankerinter.net zone, but it returned this:
Code:
Domain NS records	Nameserver records returned by the parent servers are:

ns1.bankerinter.net.   ['89.216.116.184']   [TTL=172800] 
ns2.bankerinter.net.   ['89.216.116.206']   [TTL=172800] 
ns3.bankerinter.net.   ['212.95.44.233']   [TTL=172800] 
ns4.bankerinter.net.   ['212.200.108.17']   [TTL=172800]
which would imply that, unless you plan to change some of those ns values to resolve to your own box... you'd need to:
a) add ns5/ns6 to resolve to your 122.1 box and change the nameservers of the bivoda.co.rs domain to use the ns5/ns6 values
or
b) if you don't control the bankerinter.net domain, then you'd be better off creating your own nameservers with your own domains, eg: ns1.bivoda.co.rs and ns2.bivoda.co.rs.... or any "main" domain you're using on your 122.1 box. (although you can create namesevers for each domain, you really only need to create one set of ns's for just one of your domains, and you can use it for all domains on that box)

John
 
Ok so you are suggesting me that its not server(122.1) problem, that its DNS registrant problem.
I have 2 registrants one is for .rs domains and other is network solutions. Registrant that report 4 nameservers is network solutions, when i go to .rs registrant they are telling me that ns1.bankerinter.net is on this box 122.1.

Another question is why when i use network-tools.com on dns records for ip 85.17.122.1 i get this :
No host name is associated with this IP address or no reverse lookup is configured.

But my host name is hosting.bankerinter.net

or when i do express i get this:

IP address: 85.17.122.1
No host name is associated with this IP address or no reverse lookup is configured.

Error:Host not found

85.17.122.1 is from Netherlands(NL) in region Western Europe


TraceRoute to 85.17.122.1
Hop (ms) (ms) (ms) IP Address Host name
1 31 48 48 72.249.128.5 -
2 17 24 22 8.9.232.73 xe-5-3-0.edge3.dallas1.level3.net
3 14 17 18 4.69.145.180 ae-83-80.ebr3.dallas1.level3.net
4 36 36 32 4.69.134.22 ae-7-7.ebr3.atlanta2.level3.net
5 44 43 46 4.69.132.86 ae-2-2.ebr1.washington1.level3.net
6 59 56 55 4.69.134.130 ae-61-61.csw1.washington1.level3.net
7 53 61 66 4.69.134.145 ae-62-62.ebr2.washington1.level3.net
8 145 149 151 4.69.137.61 ae-44-44.ebr2.frankfurt1.level3.net
9 136 148 161 4.69.143.165 ae-45-45.ebr1.dusseldorf1.level3.net
10 144 138 133 4.69.141.150 ae-1-100.ebr2.dusseldorf1.level3.net
11 149 152 139 4.69.143.205 ae-47-47.ebr1.amsterdam1.level3.net
12 138 135 136 4.69.139.139 ae-1-51.edge5.amsterdam1.level3.net
13 168 180 137 212.72.41.14 leaseweb-crs-tc2.amsterdam1.level3.net
14 148 139 139 62.212.80.26 te6-3.hv14.evo.leaseweb.net
15 135 Timed out 131 85.17.122.1 -

Trace complete

Is it again dns problem that they didnt updated or my server doesnt resolve hostname to ip?
 
Back
Top