Re: BIND and UDP tuning

2018-09-29 Thread Alex
Hi, > DOCSIS cable systems use an upstream request/grant system to avoid > collisions (they act as a hub where only one cable modem in the node can > transmit at the same time). This leads to low pps rates compared with > ethernet. Even a 10M ethernet connection (1k-10k pps) will outperform a >

stop on unrecognized qresult in rpz_rewrite()

2018-09-29 Thread Lee
I tried to go to https://fpki.idmanagement.gov/ and got some error message about not finding the site with a "try again" button. Tried again and it worked: 29-Sep-2018 15:56:21.677 queries: info: client @01F0C8672910 127.0.0.1#58997 (fpki.idmanagement.gov): query: fpki.idmanagement.gov IN A

Forward type "only" no longer working (possibly a regression)?

2018-09-29 Thread Karol Babioch
Hi, after upgrading my bind installation from 9.10.0 to 9.13.3 I'm encoutering issues with zones that are forwarded. My setup is somewhat complicated, but I was able to simplify it, so hopefully explanations. Basically I have a split horizon DNS, so on my local resolver I'm forwarding specific

Re: stop on unrecognized qresult in rpz_rewrite()

2018-09-29 Thread Evan Hunt
On Sat, Sep 29, 2018 at 05:48:55PM -0400, Lee wrote: > Can someone tell me what can cause > stop on unrecognized qresult in rpz_rewrite()failed: > or how to fix whatever it was? It's an interaction between RPZ and aggressive negative caching (i.e. "synth-from-dnssec"). It's fixed in the