On 3/1/2014 1:45 AM, Maren S. Leizaola wrote:
Hello,
What do you guys recommend to audit every resource
record in a zone file against all the records in all the DNS.
I want something that I feed the master zone file and then goes to
each NS server and ensures that the records are correct in all of them.
For some strange reason all my DNS servers have the same SOA Serial,
but after deleting two MX records, some 4 out of 5 the DNS servers
have not taken this update. I've yet to figure out the cause, but I
see that SOA Serial is not to be trusted.
Regards,
Maren.
I found the cause why, the script we use to generate the zone rounds
down to nearest hour. As I had one multiple changes the master server a
new brand new knot install had the right MX records, the other 4 did not
update as far as they knew there was no change.
I still would some tool to ensure consistency across all servers and
that I am don't find myself in the same situation in the future.
Regards,
Maren.