RE: bind-users Digest, Vol 1909, Issue 1

2014-08-07 Thread Xuan Hung
attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 181 bytes Desc: OpenPGP digital signature URL: https://lists.isc.org/pipermail/bind-users/attachments/20140807/350d67b1/attachment-0001.bin -- Message: 5 Date: Thu, 07 Aug 2014 08

Re: bind-users Digest, Vol 1909, Issue 1

2014-08-07 Thread Abdul Khader
-- next part -- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 181 bytes Desc: OpenPGP digital signature URL: https://lists.isc.org/pipermail/bind-users/attachments/20140807/350d67b1/attachment-0001.bin -- Message

Re: bind-users Digest, Vol 1909, Issue 1

2014-08-07 Thread Abdul Khader
Paste the result of the following command. dig @203.113.188.3 dep123.com +trace Abdul Khader On 07-Aug-14 1:27 PM, Xuan Hung wrote: Dear Partner ! I set recursive-clients = 2. I sent myserver log. Can you help me ? version: 9.9.5 (x.x.x) id:f9b8a50e CPUs found: 24 worker threads:

Re: bind-users Digest, Vol 1909, Issue 1

2014-08-07 Thread Abdul Khader
Make your firewall allows DNS packets 512 bytes. In the meantime, do the following. do dig with +noedns +bufsize=0 if the dig with +noedns +bufsize=0 gives you answer, then add the following to named.conf server 0.0.0.0/0 { edns no; }; This should fix your issue. Once your

Re: bind-users Digest, Vol 1909, Issue 1

2014-08-07 Thread Reindl Harald
Am 07.08.2014 um 12:09 schrieb Abdul Khader: To: Xuan Hung hungn...@viettel.com.vn, bind-users@lists.isc.org, bind-users-boun...@lists.isc.org, jared.emp...@zitomedia.com, dave.berna...@zitomedia.com, ma...@isc.org, h.rei...@thelounge.net PLEASE don't do that * just respond to

How to figure out QPS in bind 9.9

2014-08-07 Thread Gaurav Kansal
Dear Team, I am running authoritative server on bind 9.9.5 . I want to figure out how many queries am receiving per second at any point of time (or average QPS). I had enabled the statistics-channel in the bind conf, but there also I am getting total number of queries and not the QPS.

Re: bind-users Digest, Vol 1909, Issue 1

2014-08-07 Thread Abdul Khader
Comment the following line edns-udp-size 512; Abdul Khader Engineer/Network Services/SOM Mobile : 050-153-5461 Extension : 86-7292 On 07-Aug-14 2:15 PM, Xuan Hung wrote: DearAbdul Khader ! My Named.conf edns-udp-size 512; max-cache-size 4096M; recursive-clients 2; have no server

RE: bind-users Digest, Vol 1909, Issue 1

2014-08-07 Thread Xuan Hung
Dear Abdul Khader ! I comment //edns-udp-size 512; But, I check is fail. L [root@dns data]# dig @203.113.188.3 +noedns +bufsize=0 vodafone-com.mail.protection.outlook.com ; DiG 9.9.5 @203.113.188.3 +noedns +bufsize=0 vodafone-com.mail.protection.outlook.com ; (1 server

RE: bind-users Digest, Vol 1909, Issue 1

2014-08-07 Thread Xuan Hung
Dear Abdul Khader! I send result command dig. I think command dig without cache. [root@dns data]# dig @203.113.188.3 vodafone-com.mail.protection.outlook.com ; DiG 9.9.5 @203.113.188.3 vodafone-com.mail.protection.outlook.com ; (1 server found) ;; global options: +cmd ;; Got

Re: bind-users Digest, Vol 1909, Issue 1

2014-08-07 Thread Abdul Khader
please add the following. server 0.0.0.0/0 { edns no; }; Then do dig and then check +trace Abdul Khader On 07-Aug-14 2:33 PM, Xuan Hung wrote: DearAbdul Khader ! I comment //edns-udp-size 512; But, I check is fail. L [root@dns data]# dig @203.113.188.3 +noedns +bufsize=0

RE: bind-users Digest, Vol 1909, Issue 1

2014-08-07 Thread Xuan Hung
Dear Abdul Khader ! When I use dig, then I receive immediately. I think edns not use in this case. L Can you help me fix this problem ?? Thanks./. %%- Nguyễn Xuân Hùng 0084-966581518 P.ISP– TT CNTT – VTNet. From: Abdul Khader [mailto:akha...@ies.etisalat.ae]

RE: Value of memory

2014-08-07 Thread Lightner, Jeff
Also remember that used reported by free in Linux on the first line includes memory pre-allocated to cache and buffers that is readily usable on demand so isn't really allocated to specific processes like you'd see in a similarly configured UNIX system. Be sure when trying to determine used

Re: Value of memory

2014-08-07 Thread Blake Hudson
Robert, I'm running a minimal install of CentOS7 on x86 hardware. This system provides authoritative and recursive roles across two separate BIND views. I also have rbldnsd serving a few zones on this system. free reports the following after ~24 hrs of uptime: total used

Re: How to figure out QPS in bind 9.9

2014-08-07 Thread Leonard Mills
At about 3:26 AM on 07 AUG 2014 Gaurav Kansal asked: ... Is there any way out to figure out the same ? Here are two easy approaches: Create a simple database or sequence of files containing the results of an all star crontab entry.  The persistent storage entries coming over the statistics

Re: How to figure out QPS in bind 9.9

2014-08-07 Thread Evan Hunt
On Thu, Aug 07, 2014 at 03:55:56PM +0530, Gaurav Kansal wrote: I had enabled the statistics-channel in the bind conf, but there also I am getting total number of queries and not the QPS. Is there any way out to figure out the same ? Poll the stats channel every 60 seconds, subtract the

Re: Log Monitoring

2014-08-07 Thread G.W. Haywood
Hi there, On Thu, 7 Aug 2014, Davis, Donald W wrote: I am looking for scripts that can be used to parse and monitor the DNS logs for suspicious activity. If Nagios didn't exist, I'd have to invent it: http://exchange.nagios.org/directory/Plugins/Network-Protocols/DNS

Re: bind 9.10-P2 dnssec keys management

2014-08-07 Thread Evan Hunt
3. I use dig to check whether bind activate new key correctly or not but I notice there is some dns records which are signed by new key and some dns records are signed by old key. In therory,After new ZSK is activated.All dns records must be signed with new key. After a new ZSK is

Re: bind 9.10-P2 dnssec keys management

2014-08-07 Thread Mark Andrews
Please FIX your email client. It really stuffs up the text/plain by adding in additional lines. In message 102153bef555e7489ca5d54165c431a301301...@exchbsi02.ttt.co.th, Jit tinan Suwanruengsri writes: Hi, 1. my server use key id 23412 first and then 40767 [root@dnssec keys]#

Re: Metazones or Something Else?

2014-08-07 Thread Elia Pinto
Il 04/ago/2014 18:33 John Anderson jo...@ccbill.com ha scritto: Greetings Bind-Users List, I've recently inherited a project that is going to require some method of automatically disseminating zone information to slave DNS servers running BIND. While searching for an industry standard method

rndc zonestatus meaning

2014-08-07 Thread Jittinan Suwanruengsri
Hi, 1. #rncd zonestatus example.com name: example.com type: master files: /usr/local/named/zone/example.com.zone serial: 2013122402 signed serial: 2013122405 nodes: 5 last loaded: Fri, 29 Aug 2014 08:00:15 GMT secure: yes inline signing: yes key maintenance: automatic next key