Re: Too many connections on the same IP

2015-03-06 Thread John Wobus
Re firewalls: I've been forced to adjust firewall rules to be stateless to get busy DNS servers to work. If the state table is filling, that's easy to check. Stateless rules have traps for the unwary so assure yourself that you understand all the issues. Specifically, make sure return traffic

Re: Too many connections on the same IP

2015-03-04 Thread /dev/rob0
On Wed, Mar 04, 2015 at 09:47:59AM +0100, stefan.las...@t-systems.com wrote: Are you using iptables Firewall? Does the problem only occur on UDP connections to the problematic IP? Or also on TCP connections to the same IP? I had similar problems (not with bind) when the connection table

Re: Too many connections on the same IP

2015-03-03 Thread Matus UHLAR - fantomas
On 03.03.15 11:43, Job wrote: during a massive DNS utilization our Bind 9.10.1-P1 seems not to resolve anymore, neither local zone. We shutdown one of the two nodes and all queries arrived only on one node. CPU and memory load were not too overloaded, machine was quite fine. After some fast