BIND Performance with Huge RPZ

Vernon Schryver vjs at
Sat Jul 13 05:01:02 UTC 2013

> From: Noel Butler <noel.butler at>

> > BIND9 releases can be with the BIND RRL patches by following the link
> > labeled "Patch files for BIND9" on
> >
> > Both of those versions are or will be in official BIND releases.
> > I've lost track of which releases have or will have which of those
> > two RPZ sets of performance improvements.
> 9.9.4 will have them

Not exactly.
Checking source finds the min-ns-dots speed-up in 9.8.5-P1, 9.9.3-P1,
and 9.9.4b1 and so in 9.9.4.  On the other hand, I think the more
substantial set of RPZ speed improvements for multiple policy zones
is in none of those and so will not be in 9.9.4.  My bet would be
on 9.10 along with client IP address triggers and "drop" and
"truncate" actions.  I think the multiple zone speed-up is in the
subscription-only 9.9.4-S and so will be in 9.9.4-S1.

Vernon Schryver    vjs at

More information about the bind-users mailing list