home.social

#coredns — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #coredns, aggregated by home.social.

  1. DNS‑петля: как сервер смотрит сам в себя и не находит выхода

    Доменные имена не резолвятся, страницы висят, а по IP всё доступно. В логах DNS‑сервера при этом чисто, BIND запущен, конфигурация на первый взгляд выглядит рабочей. Разбираемся, как одна ошибка в forwarders может отправить DNS‑запросы по кругу и превратить обычный резолвинг в цепочку таймаутов.

    habr.com/ru/companies/otus/art

    #DNS #BIND #CoreDNS #forwarders #DNSпетля #systemdresolved #tcpdump #сетевая_диагностика #маршрутизация #таймауты

  2. DNS‑петля: как сервер смотрит сам в себя и не находит выхода

    Доменные имена не резолвятся, страницы висят, а по IP всё доступно. В логах DNS‑сервера при этом чисто, BIND запущен, конфигурация на первый взгляд выглядит рабочей. Разбираемся, как одна ошибка в forwarders может отправить DNS‑запросы по кругу и превратить обычный резолвинг в цепочку таймаутов.

    habr.com/ru/companies/otus/art

    #DNS #BIND #CoreDNS #forwarders #DNSпетля #systemdresolved #tcpdump #сетевая_диагностика #маршрутизация #таймауты

  3. DNS‑петля: как сервер смотрит сам в себя и не находит выхода

    Доменные имена не резолвятся, страницы висят, а по IP всё доступно. В логах DNS‑сервера при этом чисто, BIND запущен, конфигурация на первый взгляд выглядит рабочей. Разбираемся, как одна ошибка в forwarders может отправить DNS‑запросы по кругу и превратить обычный резолвинг в цепочку таймаутов.

    habr.com/ru/companies/otus/art

    #DNS #BIND #CoreDNS #forwarders #DNSпетля #systemdresolved #tcpdump #сетевая_диагностика #маршрутизация #таймауты

  4. I did a thing.
    github.com/coredns/coredns/rel
    #coredns 1.14.4 Forward-plugin supports new `next_on_nodata` directive
    When one upstream returns a NODATA response, it‘ll then try the next forward plugin, instead of responding with NODATA itself.

    #SelfHost #HomeLab

  5. I did a thing.
    github.com/coredns/coredns/rel
    #coredns 1.14.4 Forward-plugin supports new `next_on_nodata` directive
    When one upstream returns a NODATA response, it‘ll then try the next forward plugin, instead of responding with NODATA itself.

    #SelfHost #HomeLab

  6. I did a thing.
    github.com/coredns/coredns/rel
    #coredns 1.14.4 Forward-plugin supports new `next_on_nodata` directive
    When one upstream returns a NODATA response, it‘ll then try the next forward plugin, instead of responding with NODATA itself.

    #SelfHost #HomeLab

  7. Celebrating #DigitalIndependenceDay with a foundational one: #DNS.

    Every lookup travels unencrypted by default. Third-party #DoT​/​#DoH resolvers add encryption but shift trust elsewhere.

    I run a self-hosted #CoreDNS resolver, handling this locally. Its plugin system enables #AdBlocking and delegation to upstreams like #PKDNS, which resolves names from the Mainline #DHT, offering self-sovereign, censorship-resistant #DNS.

    di.day

    #did #diday #didit #ididit #dut #dutgemacht

  8. Done.

    github.com/coredns/coredns/pul

    You have an authoritative #DNS server locally, and want to overwrite _some_ but not _all_ records? There you go. #CoreDNS 1.14.3 with this patch applied allows you to do exactly that.

    Setup

    *CoreDNS* Corefile:
    . {
    forward . RECURSOR {
    next NOERROR
    }
    forward . UPSTREAM
    }

    *Recursor*, e.g. PDNS Recursor, with forward-zones-file content (or YAML equivalent):
    +.=BIND9-IP

    #OpenSource #Linux #HomeLab #SelfHost

  9. Done.

    github.com/coredns/coredns/pul

    You have an authoritative #DNS server locally, and want to overwrite _some_ but not _all_ records? There you go. #CoreDNS 1.14.3 with this patch applied allows you to do exactly that.

    Setup

    *CoreDNS* Corefile:
    . {
    forward . RECURSOR {
    next NOERROR
    }
    forward . UPSTREAM
    }

    *Recursor*, e.g. PDNS Recursor, with forward-zones-file content (or YAML equivalent):
    +.=BIND9-IP

    #OpenSource #Linux #HomeLab #SelfHost

  10. #CoreDns deprecated the "alternate"-plugin apparently - and I've relied on a patch I've made years ago to treat empty NOERROR-responses (colloquially known as NODATA) as errors, allowing for some naughty DNS hijacking.

    Ported that code from years back to the in-tree "forward"-plugin. Going to verify that it works and propose the patch upstream. Hope it gets picked up this time.

  11. #CoreDns deprecated the "alternate"-plugin apparently - and I've relied on a patch I've made years ago to treat empty NOERROR-responses (colloquially known as NODATA) as errors, allowing for some naughty DNS hijacking.

    Ported that code from years back to the in-tree "forward"-plugin. Going to verify that it works and propose the patch upstream. Hope it gets picked up this time.

  12. Ok. This the moment I stop using and maybe , for . 😎

    The implement of without me doing a single thing... Simply start the server... I don't think I need another dns authoritative server. 😉

    Excellent work from !

    blog.dnsimple.com/2026/02/erld

  13. Ok. This the moment I stop using #coredns and maybe #powerdns, for #erldns. 😎

    The implement of #CodDel without me doing a single thing... Simply start the server... I don't think I need another dns authoritative server. 😉

    Excellent work from #dnsimple!

    blog.dnsimple.com/2026/02/erld

  14. Ok. This the moment I stop using #coredns and maybe #powerdns, for #erldns. 😎

    The implement of #CodDel without me doing a single thing... Simply start the server... I don't think I need another dns authoritative server. 😉

    Excellent work from #dnsimple!

    blog.dnsimple.com/2026/02/erld

  15. Ok. This the moment I stop using #coredns and maybe #powerdns, for #erldns. 😎

    The implement of #CodDel without me doing a single thing... Simply start the server... I don't think I need another dns authoritative server. 😉

    Excellent work from #dnsimple!

    blog.dnsimple.com/2026/02/erld

  16. Ok. This the moment I stop using #coredns and maybe #powerdns, for #erldns. 😎

    The implement of #CodDel without me doing a single thing... Simply start the server... I don't think I need another dns authoritative server. 😉

    Excellent work from #dnsimple!

    blog.dnsimple.com/2026/02/erld

  17. Today:

    - There was an internet outage for about 5 hours.
    - After which my home server froze (first Linux crash I've seen in a while).
    - After force restarting it, somehow the Docker container networks changed so they broke one of my views for split-horizon DNS in , which took about 2 hours to debug.

    Breath in... breath out... breath in...

  18. Today:

    - There was an internet outage for about 5 hours.
    - After which my home server froze (first Linux crash I've seen in a while).
    - After force restarting it, somehow the Docker container networks changed so they broke one of my views for split-horizon DNS in #CoreDNS, which took about 2 hours to debug.

    Breath in... breath out... breath in...

    #SelfHosting #SelfHosted #HomeServer

  19. Today:

    - There was an internet outage for about 5 hours.
    - After which my home server froze (first Linux crash I've seen in a while).
    - After force restarting it, somehow the Docker container networks changed so they broke one of my views for split-horizon DNS in #CoreDNS, which took about 2 hours to debug.

    Breath in... breath out... breath in...

    #SelfHosting #SelfHosted #HomeServer

  20. Today:

    - There was an internet outage for about 5 hours.
    - After which my home server froze (first Linux crash I've seen in a while).
    - After force restarting it, somehow the Docker container networks changed so they broke one of my views for split-horizon DNS in #CoreDNS, which took about 2 hours to debug.

    Breath in... breath out... breath in...

    #SelfHosting #SelfHosted #HomeServer

  21. Today:

    - There was an internet outage for about 5 hours.
    - After which my home server froze (first Linux crash I've seen in a while).
    - After force restarting it, somehow the Docker container networks changed so they broke one of my views for split-horizon DNS in #CoreDNS, which took about 2 hours to debug.

    Breath in... breath out... breath in...

    #SelfHosting #SelfHosted #HomeServer