This is a discussion on Re: Too Much DNS Traffic / Analysis - FreeBSD ; On Mon, Nov 03, 2003 at 06:54:35PM -0800, Jason C. Wells wrote: > I get what I think is way too much traffic on DNS. I recently read about > DNS misconfigurations and the trouble they cause. I am suspicious ...
On Mon, Nov 03, 2003 at 06:54:35PM -0800, Jason C. Wells wrote:
> I get what I think is way too much traffic on DNS. I recently read about
> DNS misconfigurations and the trouble they cause. I am suspicious that I
> am one of the culprits. (I have been running with the same config for
> a long time. I would mortified to find that my DNS is fubar.)
> My DNS works. I can query the world and the world can query me. One
> point of concern is that my name server is behind a firewall with PAT/NAT.
> In 'ipfw show' I can see that 528 packets came in on smtp. 20 packets
> came in on http. Something like 40,000 packets came in on DNS in one day.
> This seems to be way too much DNS traffic for the little bit of use my
> network sees.
I assume, since you didn't tell us what name servers you're talking
about, that you mean ns1.highperformance.net and
ns2.highperformance.net. ns2 seems to be dropping queries, and ns1
provides recursive service to the world. Both of these conditions can
cause you to handle more DNS traffic than you otherwise would.
Rob Thomas' Secure BIND Template
(http://www.cymru.com/Documents/secur...-template.html) is an
excellent concise resource on how to run a good DNS installation, but in
the end there is no substitute for _DNS & BIND_, 4th Ed.
email@example.com mailing list
To unsubscribe, send any mail to "firstname.lastname@example.org"