#Help Needed with DNS and Reverse Zones

107 messages · Page 1 of 1 (latest)

crimson river
#

Hello World,
I need help with setting up .arpa zones in cloudflare would it work if i use my own branded / personal assigned cloudflare name servers in rDNS Delegated to get access or to use cloudflare as parent name server of the .arpa or reverse zone

Thanks for Reading!!

#

I already set it up

rancid gull
crimson river
#

when i add a domain

#

the same 2 nameservers appear

rancid gull
#

Those aren't always the ones it uses

crimson river
#

all the time

crimson river
rancid gull
#

it'll pick others if there's any conflict or issue. If you try to preset them before you add the zone/domain in CF it'll also pick different ones. You always want to use the ones it gives you on zone creation

crimson river
rancid gull
crimson river
#

whats "CF"

#

i am bad at short terms

rancid gull
#

Cloudflare

crimson river
#

:9

crimson river
#

so

#

the hurricane electric

#

replied to me the

#

rDNS ns are updated like in the morning

#

so after that would my zones work in cloudflre

rancid gull
#

As long as you set them up right

crimson river
rancid gull
#

you created it off the reverse and made ptr records?

#

looks sane

crimson river
#

those are reverse zones for the IPv6 Addresses

rancid gull
#

yea, as long as they're the right names should activate fine

crimson river
crimson river
#

@rancid gull heyyyyyy

#

its not working 😦

rancid gull
# crimson river

can you copy those two names to this chat so I don't have to transcribe them and mess it up?

crimson river
#

a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa
and
b.0.5.0.d.0.0.0.0.7.4.0.1.0.0.2.ip6.arpa

rancid gull
#

2001:470:d:50b::/64 -> b.0.5.0.d.0.0.0.0.7.4.0.1.0.0.2.ip6.arpa
2001:470:f05a::/48 -> a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa

dig a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa ns @1.1.1.1

; <<>> DiG 9.18.28-1~deb12u2-Debian <<>> a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa ns @1.1.1.1
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 57165
;; flags: qr rd ra; QUERY: 1, ANSWER: 5, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 1232
;; QUESTION SECTION:
;a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa. IN NS

;; ANSWER SECTION:
a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa. 172800 IN NS ns4.he.net.
a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa. 172800 IN NS ns1.he.net.
a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa. 172800 IN NS ns5.he.net.
a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa. 172800 IN NS ns3.he.net.
a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa. 172800 IN NS ns2.he.net.

;; Query time: 516 msec
;; SERVER: 1.1.1.1#53(1.1.1.1) (UDP)
;; WHEN: Fri Nov 01 16:51:43 GMT 2024
;; MSG SIZE rcvd: 157

#

not sure I understand how their setup is supposed to work fully, but if it's supposed to be simple delegation of the /48 and /64 to your own ns, it's not

crimson river
#

Lemme ask "HE", Hurricane Electric

#

Waiting for their reply

crimson river
#

Just a question how do you obtain ip6-servers.arpa

thin grail
crimson river
# rancid gull 2001:470:d:50b::/64 -> b.0.5.0.d.0.0.0.0.7.4.0.1.0.0.2.ip6.arpa 2001:470:f05a::/...

dig a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa ns @1.1.1.1

; <<>> DiG 9.16.41 <<>> a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa ns @1.1.1.1
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 29519
;; flags: qr rd ra; QUERY: 1, ANSWER: 3, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 1232
;; QUESTION SECTION:
;a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa. IN NS

;; ANSWER SECTION:
a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa. 172800 IN NS ns5.he.net.
a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa. 172800 IN NS ns4.he.net.
a.5.0.f.0.7.4.0.1.0.0.2.ip6.arpa. 172800 IN NS ns3.he.net.

;; Query time: 1284 msec
;; SERVER: 1.1.1.1#53(1.1.1.1)
;; WHEN: Sat Nov 02 03:11:38 +06 2024
;; MSG SIZE rcvd: 121

Checked rn the ns1 and ns2 are gone.

crimson river
#

Also

#

Btw

#

There is a thing that I noticed

crimson river
#

Problem is

#

When I set the ns records to cloudflare it just doesnt work lol

#

And rDNS Delegation isn't working probably

#

I sent them an email but it's da weekend

#

And idk but I waited 3 days in da past setting the cloudflare nameservers to the arpa zones but still didn't propagate/work

crimson river
#

An update

#

see the service which gives the tunnel and sets the delegation is TB and the service which edits the dns records (same company) still has the arpa domains

#

without delegation to HE

#

ok a hing happened

#

i created another he account with permission

#

i did the rDNS Delegation

#

IT WORKS

#

NOT ON MAIN ACCOUNT

#

BUT ON SECOND

#

lol

#

it didnt take 2 second

#

here a quote
"in dns either it works in 2 second or it doesnt"

#

guys i need serious help with cloudflre rn

#

so the current thing ios

#

is*

#

the thing is

#

what do i do cause these two reverse zones are for same route of rDNS Delegation

crimson river
#

I am back with Goooood news

#

@rancid gull hey just help me with the domain starting from b.0.0.5.d.0.0.- not working

#

🙂

crimson river
#

heyy

#

@rancid gull what do i do?

crimson river
rancid gull
# crimson river <@905865275583365161> hey just help me with the domain starting from b.0.0.5.d.0...

;; QUESTION SECTION:
;b.0.5.0.d.0.0.0.0.7.4.0.1.0.0.2.ip6.arpa. IN NS

;; AUTHORITY SECTION:
b.0.5.0.d.0.0.0.0.7.4.0.1.0.0.2.ip6.arpa. 4900 IN NS colette.ns.cloudflare.com.
b.0.5.0.d.0.0.0.0.7.4.0.1.0.0.2.ip6.arpa. 4900 IN NS vicky.ns.cloudflare.com.
b.0.5.0.d.0.0.0.0.7.4.0.1.0.0.2.ip6.arpa. 4900 IN NS luciane.ns.cloudflare.com.
b.0.5.0.d.0.0.0.0.7.4.0.1.0.0.2.ip6.arpa. 4900 IN NS neil.ns.cloudflare.com.
can't have two sets, only 2 of those are right/should be kept.
Also looks like you made that zone in CF with the wrong name, should be b.0.5.0.d.0.0.0.0.7.4.0.1.0.0.2.ip6.arpa which is what HE DNS returns as well but you've got an extra zero after the b in your name

crimson river
#

what to do in this situtation

crimson river
#

hmm

#

what should i do

crimson river
#

Gm

rancid gull
rancid gull
crimson river
crimson river
#

@rancid gull Thanks you very very very much for your help

crimson river
#

tbh the issue is simply when i added the nameservers to the rDNS Delegation before cloudflare had show the NS to add they change the ns

#

the rDNS Delegation is Paired

#

for example

#

2001:470:b:157::/64
and
2001:470:e940::/48
have to have the same rDNS delegation you cant seperate

#

Here for example i own nameservers we assume: a.net and b.net:

2001:470:b:157::/64---|
                      |--------->rDNS Delegated NS: ns1, ns2, ns3, ns4, ns5
2001:470:e940::/48----|
#

i will definitely try to get ip6-servers.arpa

#

does CNAMEing work with Nameservers of cloudflare for example