On 18/09/2020 15:05, Mira Krejci via Pdns-users wrote:
thank you for your reply.
If it's a feature and can't be changed, I have a big problem that I'll
have to solve by changing the software to another.
For example, Bind asks more than once if answer does not come. Users
are angry that DNS reso
Hi Mira,
I think if a Resolver retries on possibly overloaded or attacked authoritative
DNS servers, it gets even worse for them. So I'd recommend to try to contact
the people in charge for that domain and try to convince them to solve the
problem on their side. And again, the Recursor tries on
Hi Winfried,
thank you for your reply.
If it's a feature and can't be changed, I have a big problem that I'll
have to solve by changing the software to another.
For example, Bind asks more than once if answer does not come. Users are
angry that DNS resolving does not work for them (of course, it
Hi Mira,
Yes the Recursor does no retry on *this* auth. But it tries on the other
nameservers from the NS RR set. IPv4 and IPv6. So if you have only one auth,
Recursor tries two times, IPv4 and IPv6 if available.
Winfried
Am 18. September 2020 14:47:49 MESZ schrieb Mira Krejci via Pdns-users
Hi,
I have a problem that I can't force the pdns recursor to query the
authoritative servers repeatedly if they do not answer. Recursor tries
the query only once and then return an error (SERVFAIL) to the client.
This is very problematic when the authoritative server is overloaded or
there are som