Re: DNS DDoS protection

2023-02-24 Thread King, Harold Clyde (Hal) via bind-users
I would like to hear the latest configurations for BIND to help with DDoS. -- Hal King - h...@utk.edu Systems Administrator Office of Information Technology Shared Services The University of Tennessee 103c5 Kingston Pike Building 2309 Kingston Pk. Knoxville, TN 37996 Phone: 974-1599

Re: I need to find statistics on a running server.

2023-01-12 Thread King, Harold Clyde (Hal) via bind-users
it's easy to chart out number per second, of course that's averaged out over the 2 minute window. -Christopher On Thu, 2023-01-12 at 18:30 +0000, King, Harold Clyde (Hal) via bind-users wrote: That's not bad idea. -- Hal King - h...@utk.edu Systems Administrator Office of Information Technol

Re: I need to find statistics on a running server.

2023-01-12 Thread King, Harold Clyde (Hal) via bind-users
.ms/LearnAboutSenderIdentification> I’ve turned on query logging, then grepped for the count of lines logged in a particular second. Worked well enough for the job at the time. J De: bind-users em nome de "King, Harold Clyde (Hal) via bind-users" Responder A: "King, Harold Clyde (Hal)"

I need to find statistics on a running server.

2023-01-12 Thread King, Harold Clyde (Hal) via bind-users
I need to find some answers like queries per second. Any fast ideas folks? -- Hal King - h...@utk.edu Systems Administrator Office of Information Technology Shared Services The University of Tennessee 103c5 Kingston Pike Building 2309 Kingston Pk. Knoxville, TN 37996 Phone: 974-1599

Re: getting answers from DNS queries

2022-04-25 Thread King, Harold Clyde (Hal) via bind-users
Harold Clyde (Hal) via bind-users > wrote: > > I asked this last week, but I didn't an answer. Who can I tell if a DNS query > is refused or answered? Is it in the log files? Can a compile-time option > help me access it? Sorry to repeat but I really need to know this.

getting answers from DNS queries

2022-04-25 Thread King, Harold Clyde (Hal) via bind-users
I asked this last week, but I didn't an answer. Who can I tell if a DNS query is refused or answered? Is it in the log files? Can a compile-time option help me access it? Sorry to repeat but I really need to know this. Thank in advance. -- Hal King - h...@utk.edu Systems Administrator

Re: How can I tell if a quiry is answered or denied

2022-04-20 Thread King, Harold Clyde (Hal) via bind-users
That's not in my version of bind-9.16.23. Thanks anyway! -- Hal King - h...@utk.edu Systems Administrator Office of Information Technology Shared Services The University of Tennessee 103c5 Kingston Pike Building 2309 Kingston Pk. Knoxville, TN 37996 Phone: 974-1599

How can I tell if a quiry is answered or denied

2022-04-20 Thread King, Harold Clyde (Hal) via bind-users
I'm trying to find bad actors stretching out my load on my main DNS server I can't tell from the query log if a host is denied an answer, or given an answer. Also, can I get the answer in my logs? I got one great answer today, maybe I'm pushing my luck, but I do feel lucky. -- Hal King -

Re: Reading secondary PTR files

2022-04-20 Thread King, Harold Clyde (Hal) via bind-users
ion> this is what I use with 9.18.1 named-compilezone -f raw -F text -o - 0.1.0.0.0.0.0.0.b.d.c.f.2.0.6.2.ip6.arpa 0.1.0.0.0.0.0.0.b.d.c.f.2.0.6.2.ip6.arpa.signed On 04/20/2022 8:42 am, King, Harold Clyde (Hal) via bind-users wrote: I need to read the reverse zone in txt and I'm not sure how to

Reading secondary PTR files

2022-04-20 Thread King, Harold Clyde (Hal) via bind-users
I need to read the reverse zone in txt and I'm not sure how to decode the file with named-compilezone. Does anyone know the part I'm missing? named-compilezone -f raw -F text -o /etc/named/secondary/9.249.192.in-addr.arpa.db 9.249.192 /etc/named/secondary/9.249.192.in-addr.arpa.db -- Hal