BIND 9's entropy consumption

2014-04-02 Thread Tom Limoncelli
Hi! I have 4 DNS servers all running BIND 9.8.2 (the CentOS 6.5 package). One is configured as the master for about 100 zones. The other 3 are slaves for those 100 zones. On the master the amount of entropy reported by "cat /proc/sys/kernel/random/entropy_avail" was around 150. On the slaves i

Re: can't validate existing negative responses (no DS)

2014-04-02 Thread Lawrence K. Chen, P.Eng.
On 04/01/14 19:49, Lawrence K. Chen, P.Eng. wrote: > Having problems with a particular insecure delegation (most are) from our zone > file, that is only not working for local users (our caching resolvers running > BIND 9.9.4-P2 or 9.9.5) > > But, everybody else reports its workingits working