We are setting up 2 AD machines:

New machine with subnet Version
4.10.11-SerNet-Debian-10.buster Bind version 9.11.5

Existing machine 1 with subnet Version
4.10.11-SerNet-Debian-10.stretch Bind version 9.10.3

Existing machine 2 with subnet  Version
4.10.11-SerNet-Debian-10.stretch Bind version 9.10.3

All with BIND_DLZ backend, same /etc/bind/named.conf.options,

This is an extract from /etc/bind/named.conf.options allowing querying:

dnssec-validation no;
    dnssec-enable no;
    dnssec-lookaside no;

    auth-nxdomain no;    # conform to RFC1035

    allow-recursion { any; };
    allow-query { any; };
    allow-query-cache { any; };

    listen-on-v6 { any; };

The only difference between them is in the file


 # For BIND 9.11.x
     database "dlopen

 # For BIND 9.10.x
    # database "dlopen

# For BIND 9.10.x
    # database "dlopen


We created the A and PTR records on the new one and they don´t appear on
the existing ones. If we create them on an existing one instead they
appear on the new one.

Updating an existing machine to debian buster doesn´t help.

Could it be that the versions of bind are different what actually
prevent the new one from being visible i.e. the DNS from

