BIND 10 #192: Data source hotspot cache

BIND 10 Development do-not-reply at isc.org
Thu Jun 24 00:43:41 UTC 2010


#192: Data source hotspot cache
-------------------------+--------------------------------------------------
 Reporter:  each         |        Owner:  each                                          
     Type:  enhancement  |       Status:  reviewing                                     
 Priority:  major        |    Milestone:  05. 3rd Incremental Release: Serious Secondary
Component:  b10-auth     |   Resolution:                                                
 Keywords:               |    Sensitive:  0                                             
-------------------------+--------------------------------------------------

Comment(by jinmei):

 Oh, and one more thing (different topic than !NameMatch, etc).

 I suspect the current implementation is very susceptible to DoS.  I'd
 simply keep sending different queries that result in negative responses.
 They'll simply be cached and never purged.

 I suggest by default we should disable cache, and by default impose some
 finite limit on the # of cache entries.

-- 
Ticket URL: <http://bind10.isc.org/ticket/192#comment:25>
BIND 10 Development <http://bind10.isc.org>
BIND 10 Development


More information about the bind10-tickets mailing list