-
DHCP clients getting one hour lease time
Problem Summary DHCP clients are getting a one hour lease instead of the configured lease time. Customer Environment NIOS appliance is serving DHCP using DHCP Failover. Version All NIOS versions. Cause The observed behavior is by design and by protocol. Resolution In a DHCP Failover configuration, the initial (first) lease…
-
NIOS hardware replacement/swaps for HA and grid configurations
Cause There may be a time when you have to replace an existing NIOS appliance. This includes replacement of existing hardware with the same model, or even an upgrade from one model to another. Resolution Following, you will find instructions for both preparation before the physical swap, as well as instructions on how to…
-
‘set holddown’ command blocking all recursive queries
Problem Summary The 'set holddown' command blocking all recursive queries Customer Environment Infoblox Grid running DNS service with global forwarders and 'set holddown' and forward-only clause enabled Versions All versions of NIOS Cause The 'set holddown' command cannot distinguish between a server or a forwarder and for…
-
CLI commands to Mitigate Phantom Domain Attacks.
Customers that are being hit with Phantom domain attacks can now automatically mitigate these attacks by using several newly-available CLI commands in NIOS 6.12.x. We can execute one of the following commands on the recursive DNS servers during event and based on attack patterns. The following commands require no special…
-
Configuring CLI commands for Automated Mitigation of Phantom Domain Attack
Problem Summary Configuring CLI commands for Automated Mitigation of Phantom domain attacks Customer Environment Infoblox DNS appliances operating with recursive DNS services Versions NIOS 6.12.1 and higher Resolution Customers that are being hit with Phantom domain attacks can now automatically mitigate these attacks by…
-
What does "no more recursive clients: quota reached" mean?
When you see the "quota reached" message, you have reached the limit for outstanding recursive queries that the recursive name server allows. When a recursive name server receives queries and it is not authoritative, the recursive name server needs to ask other name servers to get answers for those queries. Until the…
-
Network Automation cannot authenticate some SNMP v3 network devices
Problem Summary Network Automation unsuccessfully attempts to authenticate devices configured with SNMP v3 and AES-256 bit or SNMP v3 and AES-192 bit encryption Customer Environment SNMP v3 network devices using AES-256 bit or AES-192 bit encryption Versions All Network Automation(NetMRI) versions Cause Network Automation…
-
NTP Out-of-sync Error FAQ
What should I check when I see an NTP out-of-synchronization error? 1. Check the status of the external NTP servers. 2. Issue the CLI command show ntp output to see which NTP servers are synchronizing time. For example: remote refid st t when poll reach delay offset jitter…
-
Intermittent NXDOMAIN responses for certain recursive queries
Problem Summary Intermittently NXDOMAIN responses are received for certain recursive queries. The queries resolve correctly once and then NXDOMAIN response is received for subsequent queries. Customer Environment Infoblox Grid running DNS service with RPZ enabled Versions All versions of NIOS Cause Name server verification…
-
Joining a Member to Grid using LAN or MGMT interface
Problem Summary How to join a new Member to the Grid, using LAN or MGMT interface? Customer Environment Joining a new Member to the Grid Versions All versions of NIOS Resolution Before joining a member to the Grid, add the member in the GUI. Use the Add option available under Grid tab > Grid Manager > Members. Follow the…