Search Again:

Re: Sanity check on SOA values

From: Len Conrad
Date: Friday, May 24, 2002
Time: 11:22:37 am


>refresh 3 hours

refresh is only an SOA query from slave to master, so it's never expensive,
but since NOTIFY (master to slave) has become standard, the refresh timeout
is mostly moot these days.

>retry 1 hour

15m is reasonable, your slve is in kind of a "panic" mode since the master
is not responding. 15m to repeat an SOA is a decent expression of panic. :))

>expire 1 hour

... 7 or 10 days is more common

>minimum 1 day

negative TTL of 1 to 3 hours should be sufficient to keep you from getting
hammered. If you've made an error that causes the nxdomain, then 1d is too
punitive and too long. But if the users are eronneously hammering your
DNS, then 1 to 3 hours is enough to reduce the hammmering.

Len



___________________________________________________________________
Men & Mice: QuickDNS - DNS Expert - DNS Training & Consulting
DNS Class: Atlanta 05/21-23 Chicago 06/4-5 New York 06/18-19
www.MenAndMice.com/DNS-training/




Messages In This Thread:



Return to Digital Point Solutions' Home Page