SV_RFC1996_1_2_IXFR_client_Notify - an IXFR client sends an IXFR message through NOTIFY mecahnizm
Verify that a NUT sends an IXFR message to get a new information about zone.
- If an IXFR client, which likely has an older version of a zone,
- thinks it needs new information about the zone through the NOTIFY mechanism,
- it sends an IXFR message containing the SOA serial number of its,
- presumably outdated, copy of the zone.
- The query type value of IXFR assigned by IANA is 251.
- The IXFR query packet format is the same as that of a normal DNS
- query, but with the query type being IXFR and the authority section
- containing the SOA record of client's version of the zone.
Server (an IXFR client)
SV_RFC1996_1_2_IXFR_client_Notify.seq [-tooloption ...]: KOI tool option
See also DNSConfig.pm
After all zone information are transferred between primary DNS server7 (TN)
and slave DNS server1 (NUT), following pre-test sequence is performed.
DNS Client1 (TN) DNS Server1 (NUT) DNS Server7 (TN)
| | |
|----------------------------->| |
| 1. Send standard query | |
| RD = 0 | |
| QNAME = CL2.sec.example.com | |
| QTYPE = A | |
| | |
|<-----------------------------| |
| 2. Standard query response | |
| AA = 0 | |
| RD = 0 | |
| QNAME = CL2.sec.example.com | |
| QTYPE = A | |
| ANSWER Name | |
| = CL2.sec.example.com | |
| ANSWER Type | |
| = A (0x0001) | |
| ANSWER Address | |
| = 192.168.0.21 | |
| | |
v v v
This test sequence is following.
NOTE: SOA's parameter and TTL are same as above sec.example.com zone information.
TN includes NS7 and NS1.sub.example.com into Authority section as type = NS.
Also TN includes NS7 and NS1.sub.example.com address into Additional section.
Thus NUT may reply to answer client with Authority and Additional section including
those values.
DNS Client1 (TN) DNS Server1 (NUT) DNS Server7 (TN)
| | |
| | |
| |<-----------------------------|
| | 1. A NOTIFY request |
| | OPCODE = NOTIFY (4) |
| | QNAME = sec.example.com |
| | QTYPE = SOA (0x0006) |
| | ANSWER Name |
| | = sec.example.com |
| | ANSWER Type |
| | = SOA (0x0006) |
| | ANSWER SERIAL |
| | = 2 |
| | |
| |----------------------------->|
| | 2. A NOTIFY response |
| | OPCODE = NOTIFY (4) |
| | QNAME = sec.example.com |
| | QTYPE = SOA (0x0006) |
| | |
| |----------------------------->|
| | 3. Standard query |
| | QNAME = sec.example.com |
| | QTYPE = SOA (0x0006) |
| | |
| |<-----------------------------|
| | 4. Standard query response |
| | QNAME = sec.example.com |
| | QTYPE = SOA (0x0006) |
| | ANSWER Name |
| | = sec.example.com |
| | ANSWER Type |
| | = SOA (0x0006) |
| | ANSWER SERIAL |
| | = 2 |
| | |
| |----------------------------->|
| | 5. Standard query |
| | QNAME = sec.example.com |
| | QTYPE = IXFR (0x00FB) |
| | AUTHORITY Name |
| | = sec.example.com |
| | AUTHORITY Type |
| | = SOA (0x0006) |
| | AUTHORITY SERIAL |
| | = 1 |
| | |
v v v
This test sequence is following.
1. DNS Server7 (TN) sends a NOTIFY request with Answer type SOA, serial = 2 to DNS Server1 (NUT).
2. DNS Server1 (NUT) transmits a NOTIFY response
with QNAME = sec.example.com, Type = SOA to DNS Server7 (TN). (Judgment *1)
3. DNS Server1 (NUT) transmits standard query
QNAME = sec.example.com, Type = SOA to DNS Server7 (TN). (Judgment *2)
4. DNS Server7 (TN) sends standard query response with SOA serial = 2 to DNS Server1 (NUT).
5. DNS Server1 (NUT) transmits standard query with QNAME = sec.example.com, Type = IXFR,
including Authority Name = sec.example.com, Type = SOA serial = 1 to DNS Server7 (TN).
(Judgment *3)
- Packet Description
- 1st packet.
|
A NOTIFY request from DNS Server7 (TN) to Server1 (NUT)
|
| IP Header |
Source Address |
SV7_NETZ |
| Destination Address |
NUT_NETZ |
| UDP Header |
Src Port |
1000 |
| Dst Port |
53 |
| DNS Header |
ID |
0x1000 |
| QR |
0 |
| OPCODE |
4 |
| AA |
0 |
| TC |
0 |
| RD |
0 |
| RA |
0 |
| Z |
0 |
| RCODE |
0 |
| QDCOUNT |
1 |
| ANCOUNT |
1 |
| NSCOUNT |
0 |
| ARCOUNT |
0 |
| DNS Question section |
QNAME |
sec.example.com |
| QTYPE |
SOA (0x0006) |
| QCLASS |
IN (0x0001) |
| DNS Answer section |
NAME |
sec.example.com (Pointer 0xC00C)
|
| TYPE |
SOA (0x0006) |
| CLASS |
IN (0x0001) |
| TTL |
86400sec |
| RDLENGTH |
33 |
| MNAME |
NS7.sec.example.com (NS7 + Pointer 0xC00C) |
| RNAME |
root.sec.example.com (root + Pointer 0xC00C) |
| SERIAL |
2 |
| REFRESH |
180sec |
| RETRY |
30sec |
| EXPIRE |
360sec |
| MINIMUM |
30sec |
- 2nd packet.
|
A NOTIFY response from DNS Server1 (NUT) to Server7 (TN)
|
| IP Header |
Source Address |
NUT_NETZ |
| Destination Address |
SV7_NETZ |
| UDP Header |
Src Port |
53 |
| Dst Port |
1000 |
| DNS Header |
ID |
0x1000 |
| QR |
1 |
| OPCODE |
4 |
| AA |
0 |
| TC |
0 |
| RD |
0 |
| RA |
0 |
| Z |
0 |
| RCODE |
0 |
| QDCOUNT |
1 |
| ANCOUNT |
0 |
| NSCOUNT |
0 |
| ARCOUNT |
0 |
| DNS Question section |
QNAME |
sec.example.com |
| QTYPE |
SOA (0x0006) |
| QCLASS |
IN (0x0001) |
- 3rd packet.
|
Standard query from DNS Server1 (NUT) to Server7 (TN)
|
| IP Header |
Source Address |
NUT_NETZ |
| Destination Address |
SV7_NETZ |
| UDP Header |
Src Port |
ANY |
| Dst Port |
53 |
| DNS Header |
ID |
ANY |
| QR |
0 |
| OPCODE |
0 |
| AA |
0 |
| TC |
0 |
| RD |
0 |
| RA |
0 |
| Z |
0 |
| RCODE |
0 |
| QDCOUNT |
1 |
| ANCOUNT |
0 |
| NSCOUNT |
0 |
| ARCOUNT |
0 |
| DNS Question section |
QNAME |
sec.example.com |
| QTYPE |
SOA (0x0006) |
| QCLASS |
IN (0x0001) |
- 4th packet.
|
Standard query response from DNS Server7 (TN) to Server1 (NUT)
|
| IP Header |
Source Address |
SV7_NETZ |
| Destination Address |
NUT_NETZ |
| UDP Header |
Src Port |
53 |
| Dst Port |
Value that NUT uses |
| DNS Header |
ID |
Value that NUT uses |
| QR |
1 |
| OPCODE |
0 |
| AA |
1 |
| TC |
0 |
| RD |
0 |
| RA |
1 |
| Z |
0 |
| RCODE |
0 |
| QDCOUNT |
1 |
| ANCOUNT |
1 |
| NSCOUNT |
2 |
| ARCOUNT |
4 |
| DNS Question section |
QNAME |
sec.example.com |
| QTYPE |
SOA (0x0006) |
| QCLASS |
IN (0x0001) |
| DNS Answer section |
NAME |
sec.example.com (Pointer 0xC00C)
|
| TYPE |
SOA (0x0006) |
| CLASS |
IN (0x0001) |
| TTL |
86400sec |
| RDLENGTH |
33 |
| MNAME |
NS7.sec.example.com (NS7 + Pointer 0xC00C) |
| RNAME |
root.sec.example.com (root + Pointer 0xC00C) |
| SERIAL |
2 |
| REFRESH |
180sec |
| RETRY |
30sec |
| EXPIRE |
360sec |
| MINIMUM |
30sec |
| DNS Authority section |
NAME |
sec.example.com (Pointer 0xC00C) |
| TYPE |
NS (0x0002) |
| CLASS |
IN (0x0001) |
| TTL |
86400sec |
| RDLENGTH |
2 |
| NSDNAME |
NS1.sec.example.com (NS1 + Pointer 0xC00C) |
| DNS Authority section |
NAME |
sec.example.com (Pointer 0xC00C) |
| TYPE |
NS (0x0002) |
| CLASS |
IN (0x0001) |
| TTL |
86400sec |
| RDLENGTH |
2 |
| NSDNAME |
NS7.sec.example.com (Pointer 0xC02D) |
| DNS Additional section |
NAME |
NS1.sec.example.com (Pointer 0xC05A) |
TYPE
|
A (0x0001) |
| CLASS |
IN (0x0001) |
| TTL |
86400sec |
| RDLENGTH |
4 |
| ADDRESS |
192.168.0.10 |
| DNS Additional section |
NAME |
NS1.sec.example.com (Pointer 0xC05A) |
TYPE
|
AAAA (0x001C) |
| CLASS |
IN (0x0001) |
| TTL |
86400sec |
| RDLENGTH |
16 |
| ADDRESS |
3ffe:501:ffff:100::10 |
| DNS Additional section |
NAME |
NS7.sec.example.com (Pointer 0xC02D) |
TYPE
|
A (0x0001) |
| CLASS |
IN (0x0001) |
| TTL |
86400sec |
| RDLENGTH |
4 |
| ADDRESS |
192.168.0.31 |
| DNS Additional section |
NAME |
NS7.sec.example.com (Pointer 0xC02D) |
TYPE
|
AAAA (0x001C) |
| CLASS |
IN (0x0001) |
| TTL |
86400sec |
| RDLENGTH |
16 |
| ADDRESS |
3ffe:501:ffff:100::31 |
- 5th packet.
|
Standard query from DNS Server1 (NUT) to Server7 (TN)
|
| IP Header |
Source Address |
NUT_NETZ |
| Destination Address |
SV7_NETZ |
| TCP Header |
Src Port |
ANY |
| Dst Port |
53 |
| DNS Header |
ID |
ANY |
| QR |
0 |
| OPCODE |
0 |
| AA |
0 |
| TC |
0 |
| RD |
0 |
| RA |
0 |
| Z |
0 |
| RCODE |
0 |
| QDCOUNT |
1 |
| ANCOUNT |
0 |
| NSCOUNT |
>=1 |
| ARCOUNT |
0 |
| DNS Question section |
QNAME |
sec.example.com |
| QTYPE |
IXFR (0x00FB) |
| QCLASS |
IN (0x0001) |
| DNS Authority section |
NAME |
sec.example.com (Pointer 0xC00C)
|
| TYPE |
SOA (0x0006) |
| CLASS |
IN (0x0001) |
| TTL |
86400sec |
| RDLENGTH |
33 |
| MNAME |
NS7.sec.example.com (NS7 + Pointer 0xC00C) |
| RNAME |
root.sec.example.com (root + Pointer 0xC00C) |
| SERIAL |
1 |
| REFRESH |
180sec |
| RETRY |
30sec |
| EXPIRE |
360sec |
| MINIMUM |
30sec |
- Exp.
| NUT_NETZ |
DNS Server1's (NUT) Net-z address |
| CL1_NETZ |
DNS Client1's (TN) Net-z address |
| SV7_NETZ |
DNS Server7's (TN) Net-z address |
2. Received a NOTIFY response with OPCODE=NOTIFY(4).
3. Received standard query with Type=SOA after a NOTIFY response received.
5. Received standard query with Type=IXFR serial=1 using TCP.
None
RFC1995 Incremental Zone Transfer in DNS
2. Brief Description of the Protocol
3. Query Format
4. Response Format