max-cache-size query

Todd Snyder tsnyder at rim.com
Tue Jun 1 12:43:54 UTC 2010


What version of BIND are you running?  If you're getting FD limits, I'd think it's an older version with a bug, and your problems might also be alleviated by upgrading.

Todd.

-----Original Message-----
From: bind-users-bounces+tsnyder=rim.com at lists.isc.org [mailto:bind-users-bounces+tsnyder=rim.com at lists.isc.org] On Behalf Of Techi
Sent: Tuesday, June 01, 2010 8:36 AM
To: bind-users at lists.isc.org
Subject: max-cache-size query

Hallo,
Recently, I faced huge problems with my DNS servers (bind crashed with no 
apparent reason). Some of the symptons were:
* Huge number of connections on our firewalls (>150000).
* A lot of errors in syslog about max file descriptors limits reached 
(currently on system, the FD limit is 4096, the default of centos)

Anyway, after the proposal of a friend of mine, I removed the the max-cache-
size limit (that was set to 256MB.
After a restart of bind, the FW guys reported a huge drop on connections 
(<10000)!
Additionally, I have no crashes so far (in contract with 1-2 per week).
So, why:
a. bind generated so much traffic?
b. Is it possible to have bind crash because I could not handle the cache 
clean-up and on the same time to serve requests?

Thank you
_______________________________________________
bind-users mailing list
bind-users at lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

---------------------------------------------------------------------
This transmission (including any attachments) may contain confidential information, privileged material (including material protected by the solicitor-client or other applicable privileges), or constitute non-public information. Any use of this information by anyone other than the intended recipient is prohibited. If you have received this transmission in error, please immediately reply to the sender and delete this information from your system. Use, dissemination, distribution, or reproduction of this transmission by unintended recipients is not authorized and may be unlawful.



More information about the bind-users mailing list