Discussion:
[Dnsmasq-discuss] abandoned
Johnny Appleseed
2016-06-23 02:20:20 UTC
Permalink
Jun 22 20:17:35 dnsmasq[5800]: query[A] protonmail.ch from 127.0.0.1
Jun 22 20:17:35 dnsmasq[5800]: forwarded protonmail.ch to 127.0.0.1
Jun 22 20:17:35 dnsmasq[5800]: dnssec-query[DNSKEY] protonmail.ch to
127.0.0.1
Jun 22 20:17:35 dnsmasq[5800]: reply protonmail.ch is 185.70.40.181
Jun 22 20:17:35 dnsmasq[6016]: query[A] protonmail.ch from 127.0.0.1
Jun 22 20:17:35 dnsmasq[6016]: forwarded protonmail.ch to 127.0.0.1
Jun 22 20:17:35 dnsmasq[6016]: dnssec-query[DNSKEY] protonmail.ch to
127.0.0.1
Jun 22 20:17:35 dnsmasq[6016]: validation protonmail.ch is ABANDONED
Jun 22 20:17:35 dnsmasq[6016]: reply protonmail.ch is 185.70.40.181
Jun 22 20:17:35 dnsmasq[5800]: query[A] protonmail.ch from 127.0.0.1
Jun 22 20:17:35 dnsmasq[5800]: forwarded protonmail.ch to 127.0.0.1
Jun 22 20:17:36 dnsmasq[5800]: dnssec-query[DNSKEY] protonmail.ch to
127.0.0.1
Jun 22 20:17:36 dnsmasq[5800]: reply protonmail.ch is 185.70.40.181
Jun 22 20:17:36 dnsmasq[6017]: query[A] protonmail.ch from 127.0.0.1
Jun 22 20:17:36 dnsmasq[6017]: forwarded protonmail.ch to 127.0.0.1
Jun 22 20:17:36 dnsmasq[6017]: dnssec-query[DNSKEY] protonmail.ch to
127.0.0.1
Jun 22 20:17:36 dnsmasq[6017]: validation protonmail.ch is ABANDONED
Jun 22 20:17:36 dnsmasq[6017]: reply protonmail.ch is 185.70.40.181
Jun 22 20:17:57 dnsmasq[5800]: query[AAAA] star.c10r.facebook.com


anyone know why Im getting protonmail is abandoned? I have to restart
dnsmasq and it comes back online working. What does Abandoned mean?
Simon Kelley
2016-06-23 21:54:44 UTC
Permalink
The ABANDONED state it indicates that dnsmasq had to do too much work
to verify the DNSSEC data. It counts the number of queries it has to
make to get the data needed to verify DNSSEC, and if that exceeds a
fixed number (about 100, I think) then it abandons the attempt to
verify DNSSEC. This protects against infinite loops in the
verification process.

What's confusing me is that this is clearly NOT doing many queries. I
wonder is the first attempt to verify failed, and the repeated queries
for the same domain are taking a code path which doesn't re-initialise
the counter? Can you look back in the logs to the FIRST attempt to
look up protomail.ch?

Cheers,

Simon.
Post by Johnny Appleseed
Jun 22 20:17:35 dnsmasq[5800]: query[A] protonmail.ch from
127.0.0.1 Jun 22 20:17:35 dnsmasq[5800]: forwarded protonmail.ch to
127.0.0.1 Jun 22 20:17:35 dnsmasq[5800]: dnssec-query[DNSKEY]
protonmail.ch to 127.0.0.1 Jun 22 20:17:35 dnsmasq[5800]: reply
query[A] protonmail.ch from 127.0.0.1 Jun 22 20:17:35
dnsmasq[6016]: forwarded protonmail.ch to 127.0.0.1 Jun 22 20:17:35
dnsmasq[6016]: dnssec-query[DNSKEY] protonmail.ch to 127.0.0.1 Jun
22 20:17:35 dnsmasq[6016]: validation protonmail.ch is ABANDONED
Jun 22 20:17:35 dnsmasq[6016]: reply protonmail.ch is
185.70.40.181 Jun 22 20:17:35 dnsmasq[5800]: query[A] protonmail.ch
from 127.0.0.1 Jun 22 20:17:35 dnsmasq[5800]: forwarded
dnssec-query[DNSKEY] protonmail.ch to 127.0.0.1 Jun 22 20:17:36
dnsmasq[5800]: reply protonmail.ch is 185.70.40.181 Jun 22 20:17:36
dnsmasq[6017]: query[A] protonmail.ch from 127.0.0.1 Jun 22
20:17:36 dnsmasq[6017]: forwarded protonmail.ch to 127.0.0.1 Jun 22
20:17:36 dnsmasq[6017]: dnssec-query[DNSKEY] protonmail.ch to
127.0.0.1 Jun 22 20:17:36 dnsmasq[6017]: validation protonmail.ch
is ABANDONED Jun 22 20:17:36 dnsmasq[6017]: reply protonmail.ch is
185.70.40.181 Jun 22 20:17:57 dnsmasq[5800]: query[AAAA]
star.c10r.facebook.com
anyone know why Im getting protonmail is abandoned? I have to
restart dnsmasq and it comes back online working. What does
Abandoned mean?
_______________________________________________ Dnsmasq-discuss
http://lists.thekelleys.org.uk/mailman/listinfo/dnsmasq-discuss
Continue reading on narkive:
Loading...