I just checked our setup since it uses Windows DNS also. It looks like our main domain is set to secure updates only, and i can't add anything to that. The internal domain which is where I spin up servers allows non-secure updates. The Windows tech says that if you can join the machine to the domain, he can give it permissions, but not sure how you can do that from the IBM i. I have some of my linux boxes joined, but I use special software for that.
On Mon, 2020-01-06 at 19:19 +0000, Rob Berendt wrote:
Where do you set that on a Windows based DNS?
Rob Berendt
--
IBM Certified System Administrator - IBM i 6.1
Group Dekko
Dept 1600
Mail to: 2505 Dekko Drive
Garrett, IN 46738
Ship to: Dock 108
6928N 400E
Kendallville, IN 46755
<
http://www.dekko.com>
http://www.dekko.com
-----Original Message-----
From: MIDRANGE-L <
<mailto:midrange-l-bounces@xxxxxxxxxxxxxxxxxx>
midrange-l-bounces@xxxxxxxxxxxxxxxxxx
On Behalf Of DrFranken
Sent: Monday, January 6, 2020 2:13 PM
To: Midrange Systems Technical Discussion <
<mailto:midrange-l@xxxxxxxxxxxxxxxxxx>
midrange-l@xxxxxxxxxxxxxxxxxx
Subject: Re: Using the NSUPDATE command
CAUTION: This email originated from outside of the organization. Do not click links or open attachments unless you recognize the sender and know the content is safe.
Is the IP address you are coming from authorized to do updates on the
target DNS server? That is part of the security within bind.
- Larry "DrFranken" Bolhuis
<
http://www.Frankeni.com>
www.Frankeni.com
<
http://www.iDevCloud.com>
www.iDevCloud.com
- Personal Development IBM i timeshare service.
<
http://www.iInTheCloud.com>
www.iInTheCloud.com
- Commercial IBM i Cloud Hosting.
On 1/6/2020 1:59 PM, Rob Berendt wrote:
Ok, how do I get "authorized"? I didn't see a userid/password keyword.
I am trying this:
NSUPDATE
server gdsdns.dekko-1
zone corp.dekko.com
update add testdns.corp.dekko.com 86400 A 10.10.7.254
send
> > > > update failed: NOTAUTH
<
https://linux.die.net/man/8/nsupdate>
https://linux.die.net/man/8/nsupdate
I assume that it has something to do with generating a keyfile but I have no clue on how to go about doing that.
Rob Berendt
--
This is the Midrange Systems Technical Discussion (MIDRANGE-L) mailing list
To post a message email:
<mailto:MIDRANGE-L@xxxxxxxxxxxxxxxxxx>
MIDRANGE-L@xxxxxxxxxxxxxxxxxx
To subscribe, unsubscribe, or change list options,
visit:
<
https://lists.midrange.com/mailman/listinfo/midrange-l>
https://lists.midrange.com/mailman/listinfo/midrange-l
or email:
<mailto:MIDRANGE-L-request@xxxxxxxxxxxxxxxxxx>
MIDRANGE-L-request@xxxxxxxxxxxxxxxxxx
Before posting, please take a moment to review the archives
at
<
https://archive.midrange.com/midrange-l>
https://archive.midrange.com/midrange-l
.
Please contact
<mailto:support@xxxxxxxxxxxx>
support@xxxxxxxxxxxx
for any subscription related questions.
Help support midrange.com by shopping at amazon.com with our affiliate link:
<
https://amazon.midrange.com>
https://amazon.midrange.com
[
https://www.medtronsoftware.com/img/MedtronMinilogo.bmp] Kevin Bucknum
Senior Programmer Analyst
MEDDATA / MEDTRON
120 Innwood Drive
Covington LA 70433
Local: 985-893-2550
Toll Free: 877-893-2550
https://www.medtronsoftware.com
CONFIDENTIALITY NOTICE
This document and any accompanying this email transmission contain confidential information, belonging to the sender that is legally privileged. This information is intended only for the use of the individual or entity named above. The authorized recipient of this information is prohibited from disclosing this information to any other party and is required to destroy the information after its stated need has been fulfilled. If you are not the intended recipient, or the employee of agent responsible to deliver it to the intended recipient, you are hereby notified that any disclosure, copying, distribution or action taken in reliance on the contents of these documents is STRICTLY PROHIBITED. If you have received this email in error, please notify the sender immediately to arrange for return or destruction of these documents.
As an Amazon Associate we earn from qualifying purchases.