On Thu, Oct 18, 2001 at 02:43:43AM +0000, Michael Gmelin wrote: > Well, I'm using bind 9 servers (latest release).
Use dnscache. BIND in any version responds with a lot of crap and unrelated stuff in the authoritative and additional sections making the responses bigger than 512 byte often and thus requiring a re-query via tcp, what qmail per default doesn't do (qmail-ldap does), but it slows down things at least. Aside from that, BIND will happily consume all your machines ressources if anyone who is allowed to use your BIND as a cache wants that, and it can't resolve some perfectly RFC-conform (but braindead) configured sites, monty.de is a good example (though that may have changed, didn't check it for a long time). There are a lot of other design mistakes and bugs in BIND (including BIND 9). Short version: use djbdns. Greetz Henning -- * Henning Brauer, [EMAIL PROTECTED], http://www.bsws.de * * BS Web Services, Roedingsmarkt 14, 20459 Hamburg, Germany * Unix is very simple, but it takes a genius to understand the simplicity. (Dennis Ritchie)
