out when I do a "Get DNS Records" query for "microsoft.com"
When testing for yourself, please keep in mind that limited queries seem
to work fine (like, asking for A records, or MX), but doing any-queries
which give everything seems to fail.
Regards
Eivind Olsen
___
> trying to resolve www.microsoft.com or microsoft.com results in a
> "connection timed out; no servers could be reached"
Well, for what it's worth - it's not just you having that issue. When
testing from home and from work I get the same.
Of course, I could be doing something wrong, but whenever
s
over an entire day? Do you know if there are any peaks? If so, how long +
high?
Regards
Eivind Olsen
___
bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users
so check the delegation of
the domain, and we could check that we got sensible answers from your
authoritative nameservers for both abc.com and games.abc.com
Regards
Eivind Olsen
___
bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users
about that?
I only took a quick google-search for it, but it looks similar to the
error message mentioned on
http://xorl.wordpress.com/2009/07/30/cve-2009-0696-isc-bind-9-remote-rrset-crash/
And yes, update your BIND.
Regards
Eivind Olsen
___
bin
Has anyone here made use of the XML statistics interface in BIND9, to get
some numbers into Cacti (or another similar tool)? If so, how, and which
numbers did you feel were worth turning into graphs?
Regards
Eivind Olsen
___
bind-users mailing list
rformance.
resperf has a report tool which can easily make some nice graphs for you,
showing when BIND starts to struggle with sending the replies, and another
graph to tell you the latency / delay in replies.
This should give you some numbers, to see how much query logging would
impact you
way to determine "named" utilization ?
Are there measurable impacts to Query response not reflected in CPU load,
Memory or IO?
Not sure what you're after. Parameters to measure? Latency / response time?
Regards
Eivind Olsen
___
bind-use
still not
logging:
# service named restart -g
The "-g" option is to get debug output. I doubt that works nicely with the
"service" command. Running RedHat?
I don't have a RedHat system in front of me... but.. you could try:
# service named
eed to look into fixing that, as I'm guessing
BIND is then really trying to give you some nice information in the logs
but it can't..
Regards
Eivind Olsen
___
bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users
rvers used
in your organization, you'll still have problems making a solution here.
Regards
Eivind Olsen
___
bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users
either.. I haven't tried this, so I
can't guarantee it will work, but it might work changing the named.conf to
allow zone transfers, then do a "rndc reconfig"? No guarantees that it will
work as expected though :D
Regards
Eivind Olsen
_
.or must edit bind source
code?
As far as I know, it's not natively supported by BIND. Are you _really_
sure you want this? Suggested reading is for example
<http://en.wikipedia.org/wiki/DNS_hijacking>
Regards
Eivind Olsen
___
bind-
izing this so you
can do it once from one location (easiest solution: make a wrapper script,
running rndc on all servers in turn, over the network).
Regards
Eivind Olsen
___
bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users
s only served by a single physical server and that
server happens to go down some day? Any server _will_ go down sometimes,
even if you decide to not patch it...
If it's serving a domain name you care about, I'd _really_ recommend
having multiple _separate_ nameservers, hosted on sep
tion for server
hardware would be for a recursive DNS server. On one hand, the Sun (ok,
Oracle) Niagara/Coolthreads architecture seems to work nicely enough, but
maybe I'd be better off with some generic Intel/AMD based solution with
fewer threads/cores but higher GHz per thread?
spreading"
won't account for servers being down etc, the only failover mechanism is
if whatever your clients are using is capable of retrying on a different
IP-address if the first one doesn't answer.
Regards
Eivind Olsen
___
bind-users
101 - 117 of 117 matches
Mail list logo