Help - Search - Members - Calendar
Full Version: authoritative DNS servers have TTLs that do not match parent
The Planet Forums > System Administration > DNS Hosting
Jeff
www.dnsreport.com says the following about domains on my cpanel server:

QUOTE
Your NS records at the parent servers are:

ns1.mydomain.com. [my.ns1.ip.address] [TTL=172800] [US]
ns2.mydomain.com. [my.ns2.ip.address] [TTL=172800] [US]

[These were obtained from b.gtld-servers.net]

and then
QUOTE
Warning: Your NS records at your authoritative DNS servers have TTLs that do not match what the parent servers report:

ns2.mydomain.com. [TTL 172800 at parent; 14400 at my.ns1.ip.address]
ns1.mydomain.com. [TTL 172800 at parent; 14400 at my.ns1.ip.address]

In some cases, this can cause some serious problems. For example, if the parent servers have a 172800 second TTL (48 hours), and your authoritative DNS servers report a TTL of 3600 seconds (1 hour), you are saying that the parent DNS servers do not have the correct information. But, after 1 hour your DNS records may time out. At that point a DNS resolver will need to get fresh NS records. This can cause a serious problem in some cases.


I'm not sure what this is telling me or what I need to do to correct it- can anyone help me understand?

Where exactly is the 172800 set? Is that set with the root servers and something I can't change?
alduin
QUOTE (Jeff)
Is that set with the root servers and something I can't change?

Yep. I've never been able to figure out what these dire consequences are that dnsreport keeps mentioning. My TTLs have always been significantly lower than Verisign's and I've never seen a problem.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2009 Invision Power Services, Inc.