Discussion:
dns: bad dns reply: Connection refused
Chris
2014-10-20 18:06:58 UTC
Permalink
The complete error shown in my syslog is:

Oct 20 11:41:44 localhost spamd[2155]: dns: sendto() to [127.0.0.1]:53
failed: Connection refused, no more alternatives
Oct 20 11:41:44 localhost spamd[2155]: dns: bad dns reply: Connection
refused

Up until this time I saw no issues. Running SA 3.4.0 on Ubuntu 14.04.1
LTS

Anyone have any suggestions?

Chris
--
Chris
KeyID 0xE372A7DA98E6705C
31.11°N 97.89°W (Elev. 1092 ft)
13:04:42 up 1:24, 3 users, load average: 0.26, 0.20, 0.23
Ubuntu 14.04.1 LTS, kernel 3.13.0-38-generic
Reindl Harald
2014-10-20 18:11:11 UTC
Permalink
Post by Chris
Oct 20 11:41:44 localhost spamd[2155]: dns: sendto() to [127.0.0.1]:53
failed: Connection refused, no more alternatives
Oct 20 11:41:44 localhost spamd[2155]: dns: bad dns reply: Connection
refused
looks like overload of your local resolver
Post by Chris
Up until this time I saw no issues. Running SA 3.4.0 on Ubuntu 14.04.1
LTS
Anyone have any suggestions?
sorry, no, but what i face repeatly are messages like below
in fact only if the machine has more than 1 dns in resolv.conf
configure it to just use 127.0.0.1 and that won't happen

Oct 19 09:04:42 caladan spamd[20546]: dns: no callback for id
40563/IN/A/uwc.org.dbl.spamhaus.org, ignored; packet: ;; Answer received
from 10.0.0.6 (53 bytes)
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; HEADER SECTION
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; id = 40563
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; qr = 1 aa = 0 tc = 0
rd = 1 opcode = QUERY
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; ra = 1 z = 0 ad = 0
cd = 0 rcode = SERVFAIL
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; qdcount = 1 ancount
= 0 nscount = 0 arcount = 1
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; do = 0
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; EDNS version 0
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; flags: 0000
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; rcode: NOERROR
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; size: 1024
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; option:
Oct 19 09:04:42 caladan spamd[20546]: dns: [...]
Oct 19 09:04:42 caladan spamd[20546]: dns: [...]
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; QUESTION SECTION (1
record)
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;;
uwc.org.dbl.spamhaus.org. IN A
Oct 19 09:04:42 caladan spamd[20546]: dns: [...]
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; ANSWER SECTION (0
records)
Oct 19 09:04:42 caladan spamd[20546]: dns: [...]
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; AUTHORITY SECTION (0
records)
Oct 19 09:04:42 caladan spamd[20546]: dns: [...]
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; ADDITIONAL SECTION
(1 record)
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; EDNS version 0
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; flags: 0000
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; rcode: NOERROR
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; size: 1024
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; option:
Oct 19 09:04:42 caladan spamd[20546]: dns: no likely matching queries
for id 40563
Mark Martinec
2014-10-20 22:14:49 UTC
Permalink
Post by Reindl Harald
[...]
sorry, no, but what i face repeatly are messages like below
in fact only if the machine has more than 1 dns in resolv.conf
configure it to just use 127.0.0.1 and that won't happen
Oct 19 09:04:42 caladan spamd[20546]: dns: no callback for id
40563/IN/A/uwc.org.dbl.spamhaus.org, ignored; packet: ;; Answer
received from 10.0.0.6 (53 bytes)
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; HEADER SECTION
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; id = 40563
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; qr = 1 aa = 0 tc =
0 rd = 1 opcode = QUERY
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; ra = 1 z = 0 ad =
0 cd = 0 rcode = SERVFAIL
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; qdcount = 1
ancount = 0 nscount = 0 arcount = 1
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; do = 0
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; EDNS version 0
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; flags: 0000
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; rcode: NOERROR
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; size: 1024
Oct 19 09:04:42 caladan spamd[20546]: dns: [...]
Oct 19 09:04:42 caladan spamd[20546]: dns: [...]
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; QUESTION SECTION (1
record)
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;;
uwc.org.dbl.spamhaus.org. IN A
Oct 19 09:04:42 caladan spamd[20546]: dns: [...]
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; ANSWER SECTION (0
records)
Oct 19 09:04:42 caladan spamd[20546]: dns: [...]
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; AUTHORITY SECTION
(0 records)
Oct 19 09:04:42 caladan spamd[20546]: dns: [...]
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; ADDITIONAL SECTION
(1 record)
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; EDNS version 0
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; flags: 0000
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; rcode: NOERROR
Oct 19 09:04:42 caladan spamd[20546]: dns: [...] ;; size: 1024
Oct 19 09:04:42 caladan spamd[20546]: dns: no likely matching queries
for id 40563
This happens when a DNS response comes late and ALARM signal
interrupts its decoding. They call it a 'design feature',
I call it bug:

https://rt.cpan.org/Ticket/Display.html?id=83451

Mark
Chris
2014-10-22 00:28:27 UTC
Permalink
Post by Reindl Harald
[...]
sorry, no, but what i face repeatly are messages like below
in fact only if the machine has more than 1 dns in resolv.conf
configure it to just use 127.0.0.1 and that won't happen
Oddly enough shortly after 6am this morning the issue corrected itself
and all is well now it seems.
--
Chris
KeyID 0xE372A7DA98E6705C
31.11°N 97.89°W (Elev. 1092 ft)
19:26:50 up 23:59, 2 users, load average: 0.15, 0.16, 0.20
Ubuntu 14.04.1 LTS, kernel 3.13.0-38-generic
Chris
2014-10-20 18:12:15 UTC
Permalink
Post by Chris
Oct 20 11:41:44 localhost spamd[2155]: dns: sendto() to [127.0.0.1]:53
failed: Connection refused, no more alternatives
Oct 20 11:41:44 localhost spamd[2155]: dns: bad dns reply: Connection
refused
Up until this time I saw no issues. Running SA 3.4.0 on Ubuntu 14.04.1
LTS
Anyone have any suggestions?
Chris
I forgot to add that running this in a terminal:

***@localhost:~$ host www.apache.org
www.apache.org has address 192.87.106.229
www.apache.org has address 140.211.11.131
www.apache.org has IPv6 address 2001:610:1:80bc:192:87:106:229
www.apache.org mail is handled by 10 minotaur.apache.org.

seems to show that dns is working or doesn't it?
--
Chris
KeyID 0xE372A7DA98E6705C
31.11°N 97.89°W (Elev. 1092 ft)
13:11:19 up 1:31, 3 users, load average: 0.24, 0.21, 0.23
Ubuntu 14.04.1 LTS, kernel 3.13.0-38-generic
Kevin A. McGrail
2014-10-20 18:10:08 UTC
Permalink
Post by Chris
Oct 20 11:41:44 localhost spamd[2155]: dns: sendto() to [127.0.0.1]:53
failed: Connection refused, no more alternatives
Oct 20 11:41:44 localhost spamd[2155]: dns: bad dns reply: Connection
refused
Up until this time I saw no issues. Running SA 3.4.0 on Ubuntu 14.04.1
LTS
Anyone have any suggestions?
Is your DNS server running on the localhost?

Is it blocked? Does it have enough threads? Does your resolve.conf
contain ONLY 127.0.0.1 (usually that's fine?)

This implies solely a DNS issue to me.

Regards,
KAM
Kevin A. McGrail
2014-10-20 18:13:34 UTC
Permalink
Post by Chris
Oct 20 11:41:44 localhost spamd[2155]: dns: sendto() to [127.0.0.1]:53
failed: Connection refused, no more alternatives
Oct 20 11:41:44 localhost spamd[2155]: dns: bad dns reply: Connection
refused
Up until this time I saw no issues. Running SA 3.4.0 on Ubuntu 14.04.1
LTS
Anyone have any suggestions?
Is your DNS server running on the localhost?

Is it blocked? Does it have enough threads? Does your resolve.conf
contain ONLY 127.0.0.1 (usually that's fine?)

This implies solely a DNS issue to me.

Regards,
KAM
Continue reading on narkive:
Loading...