On Thu, 21 Oct 2021 15:55:54 -0700
Kenneth Porter <[email protected]> wrote:

> On 10/21/2021 10:14 AM, Paul Kosinski via clamav-users wrote:
> > I've never seen a DNS age warning, but that might be because, for several 
> > years now, I only run freshclam when the DNS TXT record (which I check 
> > hourly) says there is a new signature available compared to a local file's 
> > version number (in its header).  
> 
> I thought freshclam did the DNS check itself. Why do it again before 
> running freshclam?


Because a couple of years ago I was running a local mirror using full CVDs, but 
Cloudflare's BOS POP/server was often out of date compared to the claimed 
current CVD version. So I was trying to reduce bandwidth consumption by not 
directly downloading the whole CVD. Now I use freshclam directly on our 3 
ClamAV systems, but I kept the DNS TXT check as it still reduces bandwidth a 
bit (compared to hourly freshclam runs) and also provides a nice summary of 
available vs installed DB files.

_______________________________________________

clamav-users mailing list
[email protected]
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq

http://www.clamav.net/contact.html#ml

Reply via email to