[PR #6418] [MERGED] [client] Answer NODATA instead of SERVFAIL when a host has no addresses of the requested family #29507

Closed
opened 2026-08-05 08:08:11 -04:00 by saavagebueno · 0 comments
Owner

📋 Pull Request Information

Original PR: https://github.com/netbirdio/netbird/pull/6418
Author: @lixmal
Created: 6/12/2026
Status: Merged
Merged: 6/12/2026
Merged by: @lixmal

Base: mainHead: dnsfwd-no-suitable-address-nodata


📝 Commits (1)

  • de4e301 Answer NODATA instead of SERVFAIL when a host resolves without addresses of the requested family

📊 Changes

2 files changed (+134 additions, -0 deletions)

View changed files

📝 client/internal/dns/resutil/resolve.go (+12 -0)
client/internal/dns/resutil/resolve_test.go (+122 -0)

📄 Description

Describe your changes

The DNS forwarder and upstream resolver answered SERVFAIL when a name resolved but had no addresses of the requested family (e.g. an AAAA query for a name with only an IPv4 hosts-file entry), logging a failed to resolve query warning on every such query.

  • Map the net package's "no suitable address found" error to NODATA instead of SERVFAIL, since the domain exists
  • Add tests for the rcode mapping in resutil, including one that pins the error string against the real net resolver

Stack

Checklist

  • Is it a bug fix
  • Is a typo/documentation fix
  • Is a feature enhancement
  • It is a refactor
  • Created tests that fail without the change (if possible)
  • This change does not modify the public API, gRPC protocols, functionality behavior, CLI / service flags, or introduce a new feature — OR I have discussed it with the NetBird team beforehand (link the issue / Slack thread in the description). See CONTRIBUTING.md.

By submitting this pull request, you confirm that you have read and agree to the terms of the Contributor License Agreement.

Documentation

Select exactly one:

  • I added/updated documentation for this change
  • Documentation is not needed for this change (internal bug fix, no user-facing behavior to document)

Docs PR URL (required if "docs added" is checked)

Paste the PR link from https://github.com/netbirdio/docs here:

https://github.com/netbirdio/docs/pull/__

Summary by CodeRabbit

  • Bug Fixes

    • Enhanced DNS resolver to more accurately handle network address lookup failures, improving error reporting reliability.
  • Tests

    • Added comprehensive test coverage for DNS address lookup functionality across multiple error scenarios and network conditions.

🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.

## 📋 Pull Request Information **Original PR:** https://github.com/netbirdio/netbird/pull/6418 **Author:** [@lixmal](https://github.com/lixmal) **Created:** 6/12/2026 **Status:** ✅ Merged **Merged:** 6/12/2026 **Merged by:** [@lixmal](https://github.com/lixmal) **Base:** `main` ← **Head:** `dnsfwd-no-suitable-address-nodata` --- ### 📝 Commits (1) - [`de4e301`](https://github.com/netbirdio/netbird/commit/de4e3019191ddfa9f72613e78771eea367ed6980) Answer NODATA instead of SERVFAIL when a host resolves without addresses of the requested family ### 📊 Changes **2 files changed** (+134 additions, -0 deletions) <details> <summary>View changed files</summary> 📝 `client/internal/dns/resutil/resolve.go` (+12 -0) ➕ `client/internal/dns/resutil/resolve_test.go` (+122 -0) </details> ### 📄 Description ## Describe your changes The DNS forwarder and upstream resolver answered SERVFAIL when a name resolved but had no addresses of the requested family (e.g. an AAAA query for a name with only an IPv4 hosts-file entry), logging a `failed to resolve query` warning on every such query. - Map the net package's "no suitable address found" error to NODATA instead of SERVFAIL, since the domain exists - Add tests for the rcode mapping in resutil, including one that pins the error string against the real net resolver ## Issue ticket number and link ## Stack <!-- branch-stack --> ### Checklist - [x] Is it a bug fix - [ ] Is a typo/documentation fix - [ ] Is a feature enhancement - [ ] It is a refactor - [x] Created tests that fail without the change (if possible) - [x] This change does **not** modify the public API, gRPC protocols, functionality behavior, CLI / service flags, or introduce a new feature — **OR** I have discussed it with the NetBird team beforehand (link the issue / Slack thread in the description). See [CONTRIBUTING.md](https://github.com/netbirdio/netbird/blob/main/CONTRIBUTING.md#discuss-changes-with-the-netbird-team-first). > By submitting this pull request, you confirm that you have read and agree to the terms of the [Contributor License Agreement](https://github.com/netbirdio/netbird/blob/main/CONTRIBUTOR_LICENSE_AGREEMENT.md). ## Documentation Select exactly one: - [ ] I added/updated documentation for this change - [x] Documentation is **not needed** for this change (internal bug fix, no user-facing behavior to document) ### Docs PR URL (required if "docs added" is checked) Paste the PR link from https://github.com/netbirdio/docs here: https://github.com/netbirdio/docs/pull/__ <!-- This is an auto-generated comment: release notes by coderabbit.ai --> ## Summary by CodeRabbit * **Bug Fixes** * Enhanced DNS resolver to more accurately handle network address lookup failures, improving error reporting reliability. * **Tests** * Added comprehensive test coverage for DNS address lookup functionality across multiple error scenarios and network conditions. <!-- end of auto-generated comment: release notes by coderabbit.ai --> --- <sub>🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.</sub>
saavagebueno added the pull-request label 2026-08-05 08:08:11 -04:00
Sign in to join this conversation.
No Label pull-request
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: DYNR/netbird#29507