我在Amazon Route53的DNS区域中输入了一个拼写错误。我有一个IP从53开始,应该是52.我现在已经在Route53上更改了它,但我仍然从dig和其他使用UDP的解析器机制获取旧数据。如果我强制使用TCP,我会得到正确的数据。
以下是Route53截至此时的实际DNS记录,以BIND语法表示:
$ORIGIN templatolio.com.
@ 3600 IN A 52.32.48.83
这是使用UDP的结果。请注意,ANSWER以53开头,Authority为0:
C:\>dig templatolio.com @ns1.aleyant.net
; <<>> DiG 9.10.3-P4 <<>> templatolio.com @ns1.aleyant.net
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 34565
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 4000
;; QUESTION SECTION:
;templatolio.com. IN A
;; ANSWER SECTION:
templatolio.com. 2289 IN A 53.32.48.83
;; Query time: 19 msec
;; SERVER: 205.251.199.16#53(205.251.199.16)
;; WHEN: Thu Sep 29 11:58:33 EDT 2016
;; MSG SIZE rcvd: 60
以下是使用TCP的结果。请注意,ANSWER以52开头,因为它应该:
C:\>dig +tcp templatolio.com @ns1.aleyant.net
; <<>> DiG 9.10.3-P4 <<>> +tcp templatolio.com @ns1.aleyant.net
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 59721
;; flags: qr aa rd; QUERY: 1, ANSWER: 1, AUTHORITY: 8, ADDITIONAL: 5
;; WARNING: recursion requested but not available
;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 4096
;; QUESTION SECTION:
;templatolio.com. IN A
;; ANSWER SECTION:
templatolio.com. 3600 IN A 52.32.48.83
;; AUTHORITY SECTION:
templatolio.com. 3600 IN NS ns-1437.awsdns-51.org.
templatolio.com. 3600 IN NS ns-1808.awsdns-34.co.uk.
templatolio.com. 3600 IN NS ns-670.awsdns-19.net.
templatolio.com. 3600 IN NS ns-88.awsdns-11.com.
templatolio.com. 3600 IN NS ns1.aleyant.net.
templatolio.com. 3600 IN NS ns2.aleyant.net.
templatolio.com. 3600 IN NS ns3.aleyant.net.
templatolio.com. 3600 IN NS ns4.aleyant.net.
;; ADDITIONAL SECTION:
ns1.aleyant.net. 3600 IN A 205.251.199.16
ns2.aleyant.net. 3600 IN A 205.251.194.158
ns3.aleyant.net. 3600 IN A 205.251.197.157
ns4.aleyant.net. 300 IN A 205.251.192.88
;; Query time: 23 msec
;; SERVER: 205.251.199.16#53(205.251.199.16)
;; WHEN: Thu Sep 29 11:59:00 EDT 2016
;; MSG SIZE rcvd: 340
刚才有一个想法:这可能是我的ISP开始使用UDP DNS数据包吗?
答案 0 :(得分:0)
咄。我使用我的Array Networks VPN for Desktop客户端连接到VPN,正是这个VPN客户端正在捕获UDP 53.根本不是Route53问题。