slave fail to ixfr from master

2014-09-14 Thread Liu Mingxing
hi, Our slave can not get ixfr data from master, the soa number in the slave is smaller than one of the master and no responding lines are not found in the notity log. However, in the slave server, connections about both of them are found with tcpdump. to reboot the named can not fix the

Re: slave fail to ixfr from master

2014-09-14 Thread /dev/rob0
On Sun, Sep 14, 2014 at 04:40:52PM +0800, Liu Mingxing wrote: Our slave can not get ixfr data from master, the soa number in the slave is smaller than one of the master and no responding lines are not found in the notity log. However, in the slave server, connections about both of them are

1000's of zone using the same zone file in a blacklist

2014-09-14 Thread Pieter De Wit
Hi List, We are currently looking at using Bind in a DNS blacklist setup to block adult content from a network. We can scale outwards as far as we want, but it's the up sizing that has me worried. Here is a sample of the zone definitions (names changed :) ): zone domain1 { type master; file

Re: 1000's of zone using the same zone file in a blacklist

2014-09-14 Thread Steven Carr
On 15 September 2014 02:56, Pieter De Wit pie...@insync.za.net wrote: Is there any way we can reduce the memory footprint/optimize this any more ? Look ups are really fast and not a problem, just reload time and memory used. Look into using an RPZ instead of individual zone blacklists. Single

Re: Re: slave fail to ixfr from master

2014-09-14 Thread Liu Mingxing
The masters and slaves are in a private network. The zone update problem was found in only one slave server. I had checked the config file in the masters and slaves and no problems are found according to what you said. The problem disappeared when named was rebooted after deleting the zones