Re: unable to obtain neither an IPv4 nor an IPv6 dispatch

2014-07-31 Thread Cathy Almond
On 24/07/2014 01:35, Matthew Calder wrote: At the moment I'm limited to using 2 UDP listeners per interface. When stress testing I can see that only 2 out of 4 CPUs are being used, I'm guessing because I'm limited to 2 listeners. Any suggestions for what could be limiting BIND from using a

Reload BIND to listen on additional interface?

2014-07-31 Thread Johannes Kastl
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi everyone, in the quest to use a master behind a Router with changing IPs, I set up a VPN and told bind on both sides to listen on the additional VPN-IPs. But, sometimes they are not available at bind startup or the VPN loses connection. So, when

Re: Reload BIND to listen on additional interface?

2014-07-31 Thread Reindl Harald
Am 31.07.2014 um 13:24 schrieb Johannes Kastl: in the quest to use a master behind a Router with changing IPs, I set up a VPN and told bind on both sides to listen on the additional VPN-IPs. But, sometimes they are not available at bind startup or the VPN loses connection. So, when the VPN

Re: Reload BIND to listen on additional interface?

2014-07-31 Thread Mark Andrews
9.10 also has rndc scan for platforms without a routing socket or if you want to do it manually. -- Mark Andrews, ISC 1 Seymour St., Dundas Valley, NSW 2117, Australia PHONE: +61 2 9871 4742 INTERNET: ma...@isc.org ___

rndc (was: Re: Reload BIND ...)

2014-07-31 Thread /dev/rob0
On Thu, Jul 31, 2014 at 01:32:03PM +0200, Reindl Harald wrote: i am doing reloads of named with killall -HUP named just because i disabled rndc completly for security reasons and configurations are generated with own software only needs named to reload Hmm, rndc is securable. You don't have

Re: rndc

2014-07-31 Thread Reindl Harald
Am 31.07.2014 um 17:41 schrieb /dev/rob0: On Thu, Jul 31, 2014 at 01:32:03PM +0200, Reindl Harald wrote: i am doing reloads of named with killall -HUP named just because i disabled rndc completly for security reasons and configurations are generated with own software only needs named to

Re: rndc

2014-07-31 Thread Kevin Darcy
On 7/31/2014 11:56 AM, Reindl Harald wrote: Am 31.07.2014 um 17:41 schrieb /dev/rob0: On Thu, Jul 31, 2014 at 01:32:03PM +0200, Reindl Harald wrote: i am doing reloads of named with killall -HUP named just because i disabled rndc completly for security reasons and configurations are generated

Re: rndc

2014-07-31 Thread /dev/rob0
On Thu, Jul 31, 2014 at 12:11:40PM -0400, Kevin Darcy wrote: kill -HUP is way more disruptive than necessary for a mere interface scan. It's overkill. Furthermore, on a server with lots of zones, it could cause a DoS while zones are reloading, and named is unable to answer. --

Re: rndc

2014-07-31 Thread Reindl Harald
Am 31.07.2014 um 20:51 schrieb /dev/rob0: On Thu, Jul 31, 2014 at 12:11:40PM -0400, Kevin Darcy wrote: kill -HUP is way more disruptive than necessary for a mere interface scan. It's overkill. Furthermore, on a server with lots of zones, it could cause a DoS while zones are reloading,

Re: rndc (and now nsupdate too)

2014-07-31 Thread /dev/rob0
On Thu, Jul 31, 2014 at 05:56:08PM +0200, Reindl Harald wrote: Am 31.07.2014 um 17:41 schrieb /dev/rob0: On Thu, Jul 31, 2014 at 01:32:03PM +0200, Reindl Harald wrote: i am doing reloads of named with killall -HUP named just because i disabled rndc completly for security reasons and

Re: rndc (and now nsupdate too)

2014-07-31 Thread Reindl Harald
Am 31.07.2014 um 21:08 schrieb /dev/rob0: On Thu, Jul 31, 2014 at 05:56:08PM +0200, Reindl Harald wrote: don't get me wrong but if someone creates *any* bind configuration and zone-files with self developed software ... that someone is almost surely doing it wrong. Zone files? there

Re: rndc (and now nsupdate too)

2014-07-31 Thread Kevin Darcy
On 7/31/2014 3:08 PM, /dev/rob0 wrote: On Thu, Jul 31, 2014 at 05:56:08PM +0200, Reindl Harald wrote: Am 31.07.2014 um 17:41 schrieb /dev/rob0: On Thu, Jul 31, 2014 at 01:32:03PM +0200, Reindl Harald wrote: i am doing reloads of named with killall -HUP named just because i disabled rndc

OT: Authoritative Server returning RR's with decrementing TTL's?

2014-07-31 Thread Ray Van Dolson
Not BIND-related specifically... (though the server below could be running BIND I suppose). This seems weird. Why is this authoritative server returning *some* answers with decrementing TTL's? $ dig @ns1.dtra.mil dtra.mil NS ; DiG 9.7.4-P1-RedHat-9.7.4-2.P1.fc14 @ns1.dtra.mil dtra.mil NS ;

Re: OT: Authoritative Server returning RR's with decrementing TTL's?

2014-07-31 Thread Leonard Mills
The never changes TTLs are from zones for which the server is authoritative.  Otherwise, the TTL is the decrementing time-in-cash-before-required-refetchng. hth, Len On Thursday, July 31, 2014 12:56 PM, Ray Van Dolson rvandol...@esri.com wrote: Not BIND-related specifically... (though the

Re: OT: Authoritative Server returning RR's with decrementing TTL's?

2014-07-31 Thread Reindl Harald
Am 31.07.2014 um 21:56 schrieb Ray Van Dolson: Not BIND-related specifically... (though the server below could be running BIND I suppose). This seems weird. Why is this authoritative server returning *some* answers with decrementing TTL's? zone delegation as example in that case it may be

Re: OT: Authoritative Server returning RR's with decrementing TTL's?

2014-07-31 Thread Doug Barton
Almost certainly not running BIND. Almost certainly is running a creative load balancing solution. hth, Doug On 07/31/2014 12:56 PM, Ray Van Dolson wrote: Not BIND-related specifically... (though the server below could be running BIND I suppose). This seems weird. Why is this

RE: bind-users Digest, Vol 1902, Issue 2

2014-07-31 Thread Xuan Hung
bytes Desc: OpenPGP digital signature URL: https://lists.isc.org/pipermail/bind-users/attachments/20140731/45b1c349/attachment-0001.bin -- Message: 3 Date: Thu, 31 Jul 2014 12:11:40 -0400 From: Kevin Darcy k...@chrysler.com To: bind-users@lists.isc.org Subject: Re: rndc

RE: bind-users Digest, Vol 1902, Issue 2

2014-07-31 Thread Son Nguyen
://lists.isc.org/pipermail/bind-users/attachments/20140731/45b1c349/attachment-0001.bin -- Message: 3 Date: Thu, 31 Jul 2014 12:11:40 -0400 From: Kevin Darcy k...@chrysler.com To: bind-users@lists.isc.org Subject: Re: rndc Message-ID: 53da6abc.4060...@chrysler.com Content