Re: My Introduction and current issues -

Michael De Roover <[email protected]>
Newsgroups gmane.network.dns.bind9.user
Organization thonkpad.lan
Message-ID <5566975.Sb9uPGUboI__43123.9044222579$1746834820$gmane$org@thonkpad.lan>
On Saturday, 10 May 2025 01:35:28 CEST Greg Choules via bind-users wrote:
> Third, use tcpdump to capture port 53. Do this to a file, then look at it
> offline in Wireshark. (Michael just beat me to that tip). Check how queries
> are arriving into BIND and what it does with them. Particularly look at the
> timings of packets and for errors, such as packet loss or ICMP.

We were close, I'm impressed at your perception for having caught it in time! 
As for logging it to a file, yes, this is what logs it into a PCAP format. That 
can then be opened in Wireshark for further analysis.

-- 
Met vriendelijke groet,
Michael De Roover

Mail: [email protected]
Web: michael.de.roover.eu.org


-- 
Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list

ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information.


bind-users mailing list
[email protected]
https://lists.isc.org/mailman/listinfo/bind-users
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.