> On 11 Nov 2021, at 10:40, Blažej Krajňák <blazej.kraj...@gmail.com> wrote: > > Hi, > > št 11. 11. 2021 o 10:28 Borja Marcos <bor...@sarenet.es> napísal(a): >> First problem: I experienced random SERVFAILS with no apparent reason while >> i had the feature turned on. I think it >> especially affected CDNs with multiple chained CNAMES and complex DNS server >> infrastructures. >> > > glad to hear the confirmation of this problem. I experienced the same > behaviour in our ISP network. Issue #2982 > https://gitlab.isc.org/isc-projects/bind9/-/issues/2982 > > Please, add your conditions and findings to ticket.
I will. I’ll add what I have for now, but it’s just anecdotal evidence. I can try to get more debugging information including packet captures. I imagine it has something to do with an interaction between CDNs (short TTL A records for DNS servers) and making the wrong decision to use stale records. It won’t be much of a hassle at home. As it is affecting mostly the Ubiquiti access points I can arrange for them to use the misbehaving bind, and the rest of the network to use different servers. Borja. _______________________________________________ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information. bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users