Amazon Route53:`dig + tcp`获取当前数据,dig(UDP)滞后

时间:2016-09-29 16:02:29

标签: amazon-web-services amazon-route53 dig

我在Amazon Route53的DNS区域中输入了一个拼写错误。我有一个IP从53开始,应该是52.我现在已经在Route53上更改了它,但我仍然从dig和其他使用UDP的解析器机制获取旧数据。如果我强制使用TCP,我会得到正确的数据。

以下是Route53截至此时的实际DNS记录,以BIND语法表示:

$ORIGIN templatolio.com.
@       3600    IN      A       52.32.48.83

这是使用UDP的结果。请注意,ANSWER以53开头,Authority为0:

C:\>dig templatolio.com @ns1.aleyant.net

; <<>> DiG 9.10.3-P4 <<>> templatolio.com @ns1.aleyant.net
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 34565
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 4000
;; QUESTION SECTION:
;templatolio.com.               IN      A

;; ANSWER SECTION:
templatolio.com.        2289    IN      A       53.32.48.83

;; Query time: 19 msec
;; SERVER: 205.251.199.16#53(205.251.199.16)
;; WHEN: Thu Sep 29 11:58:33 EDT 2016
;; MSG SIZE  rcvd: 60

以下是使用TCP的结果。请注意,ANSWER以52开头,因为它应该:

C:\>dig +tcp templatolio.com @ns1.aleyant.net

; <<>> DiG 9.10.3-P4 <<>> +tcp templatolio.com @ns1.aleyant.net
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 59721
;; flags: qr aa rd; QUERY: 1, ANSWER: 1, AUTHORITY: 8, ADDITIONAL: 5
;; WARNING: recursion requested but not available

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 4096
;; QUESTION SECTION:
;templatolio.com.               IN      A

;; ANSWER SECTION: 
templatolio.com.        3600    IN      A       52.32.48.83

;; AUTHORITY SECTION:
templatolio.com.        3600    IN      NS      ns-1437.awsdns-51.org.
templatolio.com.        3600    IN      NS      ns-1808.awsdns-34.co.uk.
templatolio.com.        3600    IN      NS      ns-670.awsdns-19.net.
templatolio.com.        3600    IN      NS      ns-88.awsdns-11.com.
templatolio.com.        3600    IN      NS      ns1.aleyant.net.
templatolio.com.        3600    IN      NS      ns2.aleyant.net.
templatolio.com.        3600    IN      NS      ns3.aleyant.net.
templatolio.com.        3600    IN      NS      ns4.aleyant.net.

;; ADDITIONAL SECTION:
ns1.aleyant.net.        3600    IN      A       205.251.199.16
ns2.aleyant.net.        3600    IN      A       205.251.194.158
ns3.aleyant.net.        3600    IN      A       205.251.197.157
ns4.aleyant.net.        300     IN      A       205.251.192.88

;; Query time: 23 msec
;; SERVER: 205.251.199.16#53(205.251.199.16)
;; WHEN: Thu Sep 29 11:59:00 EDT 2016
;; MSG SIZE  rcvd: 340

刚才有一个想法:这可能是我的ISP开始使用UDP DNS数据包吗?

1 个答案:

答案 0 :(得分:0)

咄。我使用我的Array Networks VPN for Desktop客户端连接到VPN,正是这个VPN客户端正在捕获UDP 53.根本不是Route53问题。