|
|
Re: How DNS works ?From: Len Conrad Date: Friday, November 1, 2002
Time: 3:09:50 pm
>1) Due I think to an obviously broken server somewhere, somebody began
>querying my servers for the zone over and over. (about 600 Q's per second)
>OK, so I had that that guy killed at my ISP's router.
it's broken, or malicious
>2) even after that, our DNS traffic was hugely higher than normal.
>So I re-added the zone, but gave it an ip of 127.0.0.1 and no MX record
ok, or just block the querying ip at your edge router.
>That reduced the dns traffic to the normal level.
>
>Is it normal or typical for a dns server to keep trying repeatedly to get a
>zone if the authoritative servers have no answer?
of course not. 5 secs is the usual query timeout for, eg, BIND.
Len
|

Return to Digital Point Solutions' Home Page |