Re: High performance DNS server configuration?

2016-09-15 Thread Reindl Harald
Am 15.09.2016 um 17:19 schrieb Benny Pedersen: On 2016-09-15 15:42, John Levine wrote: Problem is procmail + postfix with rbl's (zen.spamhaus.org and others). Really big problem are spam botnet's and some day we can get over 5-6 million messages per day or even more. Procmail/postfix is

Re: Load balancer for Bind

2016-09-15 Thread bert hubert
On Wed, Sep 14, 2016 at 03:41:31PM -0400, Matthew Pounsett wrote: > > I read something about HAProxy but it does not manage udp connection and > > the interesting security proxy/balancer DnsDist does not pass original > > client ip for Bind-DLZ... > > > Your best option is something that can do

Re: Load balancer for Bind

2016-09-15 Thread Phil Mayers
On 14/09/16 20:41, Matthew Pounsett wrote: Your best option is something that can do the job statelessly. As Warren says, anything that keeps state (firewall, load balancer, etc.) becomes a DoS target... or, at best, becomes the thing that runs out of resources before your network or your DNS

Re: High performance DNS server configuration?

2016-09-15 Thread John Levine
>Problem is procmail + postfix with rbl's (zen.spamhaus.org and others). > >Really big problem are spam botnet's and some day we can get over 5-6 >million messages per day or even more. > >Procmail/postfix is doing every check per msg at localdns (localdns => >rbl's) server and average check time

Re: High performance DNS server configuration?

2016-09-15 Thread /dev/rob0
On Thu, Sep 15, 2016 at 02:20:16PM +0300, Pekka Jalonen wrote: > I'm looking solution for very high performance DNS server. > > Background information; > We are running centos-release-6-8.el6.centos.12.3.x86_64 > > Hardware is Intel(R) Xeon(R) CPU E5-2620 0 @ 2.00GHz with 32 GB > memory and SSD

Re: High performance DNS server configuration?

2016-09-15 Thread Reindl Harald
Am 15.09.2016 um 13:20 schrieb Pekka Jalonen: Server is mail server with ~+150 K users. Problem is procmail + postfix with rbl's (zen.spamhaus.org and others). Really big problem are spam botnet's and some day we can get over 5-6 million messages per day or even more. Procmail/postfix is