Dns Priority

Test suite to check DNS service priorities

Valid Address

Description

Configures a simple, valid address and checks the DNS can resolve it. There is no priority involved as a single address is in use.

Scenario

Step 1: Set the following configuration in DUT1:

set interfaces ethernet eth0 address 10.0.0.2/24
set service dns forwarding record host teldat.com ipv4-address 172.24.0.11
set service dns forwarding record host teldat.com ipv6-address ff00::dead:cafe
set service dns resolver local

Step 2: Set the following configuration in DUT0:

set interfaces ethernet eth0 address 10.0.0.1/24
set service dns forwarding logs
set service dns resolver local
set service dns forwarding name-server 10.0.0.2

Step 3: Ping IP address 10.0.0.2 from DUT0:

admin@DUT0$ ping 10.0.0.2 count 1 size 56 timeout 1
Show output
PING 10.0.0.2 (10.0.0.2) 56(84) bytes of data.
64 bytes from 10.0.0.2: icmp_seq=1 ttl=64 time=0.641 ms

--- 10.0.0.2 ping statistics ---
1 packets transmitted, 1 received, 0% packet loss, time 0ms
rtt min/avg/max/mdev = 0.641/0.641/0.641/0.000 ms

Step 4: Run command show host lookup teldat.com type A wait 0 at DUT0 and check if output contains the following tokens:

172.24.0.11
Show output
teldat.com has address 172.24.0.11

Step 5: Run command service dns forwarding show logs | cat at DUT0 and expect this output:

Show output
-- Logs begin at Wed 2024-05-22 08:12:46 UTC, end at Wed 2024-05-22 08:12:50 UTC. --
May 22 08:12:49 osdx dnsmasq[17449]: dnsmasq: syntax check OK.
May 22 08:12:49 osdx dnsmasq[17456]: started, version 2.80 cachesize 150
May 22 08:12:49 osdx dnsmasq[17456]: DNS service limited to local subnets
May 22 08:12:49 osdx dnsmasq[17456]: compile time options: IPv6 GNU-getopt DBus i18n IDN DHCP DHCPv6 no-Lua TFTP conntrack ipset auth DNSSEC loop-detect inotify dumpfile
May 22 08:12:49 osdx dnsmasq[17456]: warning: ignoring resolv-file flag because no-resolv is set
May 22 08:12:49 osdx dnsmasq[17456]: using nameserver 10.0.0.2#53
May 22 08:12:49 osdx dnsmasq[17456]: read /etc/hosts - 1 addresses
May 22 08:12:50 osdx dnsmasq[17456]: query[A] teldat.com from ::1
May 22 08:12:50 osdx dnsmasq[17456]: forwarded teldat.com to 10.0.0.2
May 22 08:12:50 osdx dnsmasq[17456]: reply teldat.com is 172.24.0.11

Valid Address IPv6

Description

Configures a simple, valid IPv6 address and checks the DNS can resolve it. There is no priority involved as a single address is in use.

Scenario

Step 1: Set the following configuration in DUT1:

set interfaces ethernet eth0 address 10::2/64
set service dns forwarding record host teldat.com ipv4-address 172.24.0.11
set service dns forwarding record host teldat.com ipv6-address ff00::dead:cafe
set service dns resolver local

Step 2: Set the following configuration in DUT0:

set interfaces ethernet eth0 address 10::1/64
set service dns forwarding logs
set service dns resolver local
set service dns forwarding name-server 10::2

Step 3: Ping IP address 10::2 from DUT0:

admin@DUT0$ ping 10::2 count 1 size 56 timeout 1
Show output
PING 10::2(10::2) 56 data bytes
64 bytes from 10::2: icmp_seq=1 ttl=64 time=409 ms

--- 10::2 ping statistics ---
1 packets transmitted, 1 received, 0% packet loss, time 0ms
rtt min/avg/max/mdev = 408.796/408.796/408.796/0.000 ms

Step 4: Run command show host lookup teldat.com type A wait 0 at DUT0 and check if output contains the following tokens:

172.24.0.11
Show output
teldat.com has address 172.24.0.11

Step 5: Run command service dns forwarding show logs | cat at DUT0 and expect this output:

Show output
-- Logs begin at Wed 2024-05-22 08:12:56 UTC, end at Wed 2024-05-22 08:13:02 UTC. --
May 22 08:12:59 osdx dnsmasq[17886]: dnsmasq: syntax check OK.
May 22 08:12:59 osdx dnsmasq[17893]: started, version 2.80 cachesize 150
May 22 08:12:59 osdx dnsmasq[17893]: DNS service limited to local subnets
May 22 08:12:59 osdx dnsmasq[17893]: compile time options: IPv6 GNU-getopt DBus i18n IDN DHCP DHCPv6 no-Lua TFTP conntrack ipset auth DNSSEC loop-detect inotify dumpfile
May 22 08:12:59 osdx dnsmasq[17893]: warning: ignoring resolv-file flag because no-resolv is set
May 22 08:12:59 osdx dnsmasq[17893]: using nameserver 10::2#53
May 22 08:12:59 osdx dnsmasq[17893]: read /etc/hosts - 1 addresses
May 22 08:13:01 osdx dnsmasq[17893]: query[A] localhost.domain from ::1
May 22 08:13:01 osdx dnsmasq[17893]: forwarded localhost.domain to 10::2
May 22 08:13:02 osdx dnsmasq[17893]: reply error is REFUSED
May 22 08:13:02 osdx dnsmasq[17893]: query[A] localhost.domain from 127.0.0.1
May 22 08:13:02 osdx dnsmasq[17893]: forwarded localhost.domain to 10::2
May 22 08:13:02 osdx dnsmasq[17893]: reply error is REFUSED
May 22 08:13:02 osdx dnsmasq[17893]: query[A] localhost.domain from ::1
May 22 08:13:02 osdx dnsmasq[17893]: forwarded localhost.domain to 10::2
May 22 08:13:02 osdx dnsmasq[17893]: reply error is REFUSED
May 22 08:13:02 osdx dnsmasq[17893]: query[A] localhost.domain from 127.0.0.1
May 22 08:13:02 osdx dnsmasq[17893]: forwarded localhost.domain to 10::2
May 22 08:13:02 osdx dnsmasq[17893]: reply error is REFUSED
May 22 08:13:02 osdx dnsmasq[17893]: query[A] localhost from ::1
May 22 08:13:02 osdx dnsmasq[17893]: config localhost is NODATA-IPv4
May 22 08:13:02 osdx dnsmasq[17893]: query[A] teldat.com from ::1
May 22 08:13:02 osdx dnsmasq[17893]: forwarded teldat.com to 10::2
May 22 08:13:02 osdx dnsmasq[17893]: reply teldat.com is 172.24.0.11

Multiple Addresses

Description

Configures two DNS addresses: one invalid and the other valid. Checks that the resolution works against the second address, while the first one does not respond.

Scenario

Step 1: Set the following configuration in DUT1:

set interfaces ethernet eth0 address 10.0.0.2/24
set service dns forwarding record host teldat.com ipv4-address 172.24.0.11
set service dns forwarding record host teldat.com ipv6-address ff00::dead:cafe
set service dns resolver local

Step 2: Set the following configuration in DUT0:

set interfaces ethernet eth0 address 10.0.0.1/24
set service dns forwarding logs
set service dns resolver local
set service dns forwarding name-server 10.0.0.10 priority 0
set service dns forwarding name-server 10.0.0.2 priority 1

Step 3: Ping IP address 10.0.0.2 from DUT0:

admin@DUT0$ ping 10.0.0.2 count 1 size 56 timeout 1
Show output
PING 10.0.0.2 (10.0.0.2) 56(84) bytes of data.
64 bytes from 10.0.0.2: icmp_seq=1 ttl=64 time=0.475 ms

--- 10.0.0.2 ping statistics ---
1 packets transmitted, 1 received, 0% packet loss, time 0ms
rtt min/avg/max/mdev = 0.475/0.475/0.475/0.000 ms

Step 4: Run command show host lookup teldat.com type A wait 0 at DUT0 and check if output contains the following tokens:

172.24.0.11
Show output
teldat.com has address 172.24.0.11

Step 5: Run command service dns forwarding show logs | cat at DUT0 and expect this output:

Show output
-- Logs begin at Wed 2024-05-22 08:13:07 UTC, end at Wed 2024-05-22 08:13:13 UTC. --
May 22 08:13:10 osdx dnsmasq[18330]: dnsmasq: syntax check OK.
May 22 08:13:10 osdx dnsmasq[18337]: started, version 2.80 cachesize 150
May 22 08:13:10 osdx dnsmasq[18337]: DNS service limited to local subnets
May 22 08:13:10 osdx dnsmasq[18337]: compile time options: IPv6 GNU-getopt DBus i18n IDN DHCP DHCPv6 no-Lua TFTP conntrack ipset auth DNSSEC loop-detect inotify dumpfile
May 22 08:13:10 osdx dnsmasq[18337]: warning: ignoring resolv-file flag because no-resolv is set
May 22 08:13:10 osdx dnsmasq[18337]: using nameserver 10.0.0.10#53
May 22 08:13:10 osdx dnsmasq[18337]: using nameserver 10.0.0.2#53
May 22 08:13:10 osdx dnsmasq[18337]: read /etc/hosts - 1 addresses
May 22 08:13:11 osdx dnsmasq[18337]: query[A] teldat.com from ::1
May 22 08:13:11 osdx dnsmasq[18337]: forwarded teldat.com to 10.0.0.10
May 22 08:13:12 osdx dnsmasq[18337]: query[A] teldat.com from 127.0.0.1
May 22 08:13:13 osdx dnsmasq[18337]: query[A] teldat.com from ::1
May 22 08:13:13 osdx dnsmasq[18337]: forwarded teldat.com to 10.0.0.2
May 22 08:13:13 osdx dnsmasq[18337]: reply teldat.com is 172.24.0.11

Multiple IPv6 Addresses

Description

Configures two IPv6 DNS addresses: one invalid and the other valid. Checks that the resolution works against the second address, while the first one does not respond.

Scenario

Step 1: Set the following configuration in DUT1:

set interfaces ethernet eth0 address 10::2/64
set service dns forwarding record host teldat.com ipv4-address 172.24.0.11
set service dns forwarding record host teldat.com ipv6-address ff00::dead:cafe
set service dns resolver local

Step 2: Set the following configuration in DUT0:

set interfaces ethernet eth0 address 10::1/64
set service dns forwarding logs
set service dns resolver local
set service dns forwarding name-server 10::10 priority 0
set service dns forwarding name-server 10::2 priority 1

Step 3: Ping IP address 10::2 from DUT0:

admin@DUT0$ ping 10::2 count 1 size 56 timeout 1
Show output
PING 10::2(10::2) 56 data bytes
64 bytes from 10::2: icmp_seq=1 ttl=64 time=398 ms

--- 10::2 ping statistics ---
1 packets transmitted, 1 received, 0% packet loss, time 0ms
rtt min/avg/max/mdev = 398.120/398.120/398.120/0.000 ms

Step 4: Run command show host lookup teldat.com type A wait 0 at DUT0 and check if output contains the following tokens:

172.24.0.11
Show output
teldat.com has address 172.24.0.11

Step 5: Run command service dns forwarding show logs | cat at DUT0 and expect this output:

Show output
-- Logs begin at Wed 2024-05-22 08:13:19 UTC, end at Wed 2024-05-22 08:13:27 UTC. --
May 22 08:13:22 osdx dnsmasq[18770]: dnsmasq: syntax check OK.
May 22 08:13:22 osdx dnsmasq[18777]: started, version 2.80 cachesize 150
May 22 08:13:22 osdx dnsmasq[18777]: DNS service limited to local subnets
May 22 08:13:22 osdx dnsmasq[18777]: compile time options: IPv6 GNU-getopt DBus i18n IDN DHCP DHCPv6 no-Lua TFTP conntrack ipset auth DNSSEC loop-detect inotify dumpfile
May 22 08:13:22 osdx dnsmasq[18777]: warning: ignoring resolv-file flag because no-resolv is set
May 22 08:13:22 osdx dnsmasq[18777]: using nameserver 10::10#53
May 22 08:13:22 osdx dnsmasq[18777]: using nameserver 10::2#53
May 22 08:13:22 osdx dnsmasq[18777]: read /etc/hosts - 1 addresses
May 22 08:13:25 osdx dnsmasq[18777]: query[A] teldat.com from ::1
May 22 08:13:25 osdx dnsmasq[18777]: forwarded teldat.com to 10::10
May 22 08:13:26 osdx dnsmasq[18777]: query[A] teldat.com from 127.0.0.1
May 22 08:13:27 osdx dnsmasq[18777]: query[A] teldat.com from ::1
May 22 08:13:27 osdx dnsmasq[18777]: forwarded teldat.com to 10::2
May 22 08:13:27 osdx dnsmasq[18777]: reply teldat.com is 172.24.0.11