Certificate pending long time with cert-manager

There are tens of thousands of DNS servers on the Internet [if not more].
With regards to your specific DNS request, their replies can be grouped into five distinct categories:

  1. You've reached an authoritative DNS server for that zone and it replies as such.
  2. You've reached a DNS server that is not authoritative for that zone and can recursively reach the answer for you and does so - returning a non-authoritative result.
  3. You've reached a DNS server that is not authoritative for that zone and refuses to recursively look for the answer for you - it returns "Query Refused".
  4. You've reached a DNS server that is not authoritative for that zone and is nice enough to point you in the right direction - and it returns some root hints towards your requested zone.
  5. You reached a non-working DNS server and your querries will go unanswered.

You seem to be doing #2.
When you should be doing #1.

5 Likes