#7871 [RFE] dns-check-system-records would be _very_ helpful!
Opened a year ago by oliver. Modified 6 months ago

Request for enhancement

As an admin I do not only want to list the system records that should be created with dns-update-system-records, especially if the DNS is remote (eg. on AD), I want a tool that will automatically check if all the records that should be there, are there - on all listed DNS servers, eventually with the option to skip the locally listed DNS servers (resolv.conf).


I had the issue that the AD admins removed the DNS records and nobody noticed, until some "strange" issue appeared. I already guessed that the DNS records could be affected and checked them. However, since there are some to check, I though eventually there is a subcommand like dns-check-system-records, analogous to dns-update-system-records. Unfortunately, that is not the case.

Actual behavior

Subcommand non-existing.

Expected behavior

Easy way to check all records on all DNS servers.



Additional info:

This was a customer case; If you want me to create some RHBZ and link the customer case as well, please let me know.

Metadata Update from @rcritten:
- Custom field rhbz adjusted to https://bugzilla.redhat.com/show_bug.cgi?id=1695125

a year ago

Metadata Update from @rcritten:
- Issue tagged with: healthcheck

a year ago

I'm reaching out to you to know if this is something that can be implemented any time soon!?

It is most likely to be implemented as part of freeipa-healthcheck and not as a new command within IPA. Timeline TBD.

Hi @rcritten !

I guess you mean this one: https://github.com/freeipa/freeipa-healthcheck ?

Shall I carry over this issue to GitHub?


You can if you'd like but it isn't necessary. We pull ideas from both.

Login to comment on this ticket.