[Dnssec-trigger] dnssec-trigger let opendns sneak in and cause failure

Olafur Gudmundsson ogud at ogud.com
Tue Aug 28 00:13:31 UTC 2012


On 27/08/2012 18:30, Paul Wouters wrote:
>
> I guess dnssec-trigger really needs to configure unbound much more
> aggresively for retries and negative-caching. And perhaps try and
> keep the TCP session to the known good resolver open?
>
> Paul

I think that Unbound should try in general to keep a TCP connection to 
an forwarder.  I have a different issue that I think is related to port 
exhaustion on gateway device.

	Olafur




More information about the dnssec-trigger mailing list