gpg: failed to create temporary file '/var/lib/lurker/.#lk0x57a9d100.hantslug.org.uk.22373': Permission denied
gpg: keyblock resource '/var/lib/lurker/pubring.gpg': Permission denied
gpg: Signature made Tue Oct 16 13:27:24 2007 BST
gpg:                using DSA key 20ACB3BE515C238D
gpg: Can't check signature: No public key
   On a server I run, I've been getting these messages show up in the
system logs for the last week or so. They come approximately once an
hour, usually somewhere in the first ten minutes of the hour.
   The only things on the network are a couple of laptops which spend
a lot of their time sleeping, so I don't think it's either of them
doing it.
   The 212.23.6.100 address seems to be a DNS server for the ISP that
machine is connected through (Zen). The other one is
"ns1.whoisweb.net" -- listed as one of the nameservers for attack.in.
   Does anyone have any ideas what's going on, and why someone would
be trying to look up NS records for attack.in on my server every hour?
   Hugo.
Oct 16 12:02:57 allegro named[745]: unexpected RCODE (SERVFAIL) resolving 'attack.in/NS/IN': 218.232.110.134#53
Oct 16 12:02:59 allegro named[745]: unexpected RCODE (SERVFAIL) resolving 'attack.in/NS/IN': 212.23.6.100#53
Oct 16 12:03:02 allegro named[745]: unexpected RCODE (SERVFAIL) resolving 'attack.in/NS/IN': 212.23.3.100#53
Oct 16 12:03:02 allegro named[745]: unexpected RCODE (SERVFAIL) resolving 'attack.in/NS/IN': 218.232.110.133#53
-- 
=== Hugo Mills: hugo@... carfax.org.uk | darksatanic.net | lug.org.uk ===
  PGP key: 515C238D from wwwkeys.eu.pgp.net or http://www.carfax.org.uk
               --- Quantum est ille canis in fenestra? ---