I'm never sure if I should refer to the dns resolver as "named" or "bind." Anyway, it turns out that the problem was in Bind and as simple as my choice of rbldnsd zone names. When Bind is an authoritative name server for a zone (in this case tqmcube.com) it will not forward queries to a forwarder for sub-zones (eg rbl.tqmcube.com). Thus, by simply changing the rbldnsd zones to dummies (hosts.tqmrbl.com and clients.tqmrbl.com), Bind will forward requests to the machine running rbldnsd. ________________________________________________________________________ Total Quality Management - A Commitment to Excellence http://www.TQMcube.com