Unable to successfully use DNS on the Director Appliance

<< Back to Knowledge Search



The Director appliance was just upgraded to SGME but we can no longer connect to the device using a hostname in the address bar of the browser.

Can no longer connect to the ProxySG appliances from Director using their DNS name.

When attempting to connect to the Director interface using a DNS suffix (not just hostname) we receive the following error: "Unable to establish connection to Director. Hostname resolution may not have been enabled in the Director"

Attempting to do a traceroute to the same hostname from the Director appliance resulted in a gethostbyname: Host name lookup failure

The ifconfig output looks normal.

interface ether-0 ip address <director_IP>
no interface ether-0 shutdown
no interface lo shutdown
ip default-gateway <default_gateway_IP>
hostname chabcdir1
ip host chabcdir1
ip host localhost
ip name-server <DNS_1_IP>
ip name-server <DNS_2_IP>
ip name-server <DNS_3_IP>



1: To ensure the daemon - djbdbs- is running, execute this command in the shell.  For details on how to acess the shell, see KB4178.

  • sh-3.2# ps -aef | grep dns

If it is not running, reload it by restarting Director, or running this command.

  • sh-3.2# service djbdns start

2: One known root cause Root cause of this symtom is this: The "djbdns" binary module needs the user "dnscache" to work properly. In this fault condition we are being forced to run as the root user because "dnscache" and "dnslog" users are missing. 

We need to manually add the "dnscache" and "dnslog" users to the "/etc/passwd" file. 

NOTE: To follow the below steps you'll need to be proficient in LINUX command line syntax and also be able to navigate the VI text editor in LINUX.   For more information on the VI text editor, see this WIKI site.


  • Launch Director CLI session (SSH session to Director).
  • TIP: For detailed information on how to use the Director CLI, see KB4178 
  • From the enable prompt, type "config t" to enter configuration mode.
  • Type "shell" at the config prompt.
  • Type this command: vi /etc/passwd
  • Add the lines below to the the "/etc/passwd" file:



  • Save and exit from the "/etc/passwd" file.
  • Go back to the config mode of the director by executing the 'exit'' command.
  • Type "write memory" to save the system's configuration. 
  • From the enable prompt, type "config t" to enter configuration mode.
  • Type shell at the config prompt.
  • Restart the Director service using the commands listed below:

service director stop

service director start

  • You can try the dnsip command to verify DNS proper DNS resolution.
  • TIP: The syntax for using this command to test out the google.com's IP address is:

dnsip google.com

  • The result to the above command should be a list of IP addresses for this name.
  • If this fails, display the output of the /etc/shadow file.

cat /etc/shadow

  • NOTE: For information about the contents of /etc/shadow, please examine this link.
  • Look for these usernames: "dnscache" and "dnslog" as seen below.  If they do not exist AND the DNS lookup failed, we recommend that you add them manually using your VI text editor exactly as seen below:



NOTE: For other examples of  using the CLI syntax for Director, see 000014637000014751  , KB4253  


Additional Information
Bug Number
InQuira Doc IdKB4438

Article Feedback

Hide Properties
First Published      10/01/2014
Last Modified      10/01/2014
Last Published      10/01/2014
Article Audience
Product      Director-510
Software      Director 5.5
Topic      Authentication, Director Jobs
Article Number      000014210
Was this helpful?
Previous MonthNext Month