Obfuscating SOA information in RPZ

2019-11-29 Thread Ict Security
Dear guys, we use RPZ zone in Bind 9 to protect some users against possible malwares and to force Google safe search changing resolution to Google's safe IP address server. We have an industrial machine which, for some reason, if "complaining" about the SOA information, visible in the additional

Re: Bind max socket/query per IP

2019-05-22 Thread Ict Security
t the bottleneck? Any possible replacement, continuing using Postgresql (i made an implementation to activate some custom filtering with a database). Thank you, FC Il giorno mer 22 mag 2019 alle ore 21:40 Klaus Darilion ha scritto: > > Am 21.05.2019 um 22:31 schrieb Ict Security: > > Un

Re: Bind max socket/query per IP

2019-05-22 Thread Ict Security
ich just > stalls the queue processing for those queues. If you are not up to date you > may be running a version with those bugs and have a query pattern that > triggers > them. There are no known instances of this class of bug in the current code. > > > > > On 22 May 2

Bind max socket/query per IP

2019-05-21 Thread Ict Security
Hi guys, I am experiencing a very strange problem. Under heavy load, Bind becomes extremely load above a certain number of Qps but, if i query an alias IP address (where normally queries don't arrive), Bind answers immediately. I was wondering if there is a kind of limitation on a single IP addr

Re: BIND 9.10 fast only on alias IP

2019-05-20 Thread Ict Security
dress, when the first one is stucked? Thank you again, very best regards! FC Il giorno lun 20 mag 2019 alle ore 15:03 Mukund Sivaraman ha scritto: > > On Mon, May 20, 2019 at 10:06:09AM +0200, Ict Security wrote: > > Dear guys, > > > > i am experiencing a very strange beahv

BIND 9.10 fast only on alias IP

2019-05-20 Thread Ict Security
Dear guys, i am experiencing a very strange beahviour of Bind under busy peak time. With a quite important number of incoming DNS queries, response are really, really slow; sometimes they even stuck. If i try to query, in those busy moments, an alias secondary IP address of the same machine, the

Re: [bind-users] Slow reply under heavy load (on a specific NIC ip)

2018-06-05 Thread Ict Security
s - on the same NIC - everything is fast. Thank you!! F 2018-06-04 18:04 GMT+02:00 Ict Security : > Dear guys, > > thank you for answering. > We are using a CentOS 7.2 distribution, x64 architecture. > We use generic e1000 network driver, the Virtual machine runs under VMware >

Re: [bind-users] Slow reply under heavy load (on a specific NIC ip)

2018-06-04 Thread Ict Security
n? > > specific BIND version? > > anything about the NIC in question, possibly to include mfg && model number, > if relevant? > > Thanks > > > > On 04/06/18 07:20, Ict Security wrote: >> >> Hi guys, >> >> we are running a Bind 9.x Server, every

Fwd: Slow reply under heavy load (on a specific NIC ip)

2018-06-04 Thread Ict Security
Hi guys, we are running a Bind 9.x Server, everything is going fine. Under particular heavy load mometns, with some hundreds of concurrent queries coming in, sometime Bing stops answering for some seconds or answer with important delays. But, when i try to query the same server/same Bind on a NIC

Slow reply under heavy load (on a specific NIC ip)

2018-06-04 Thread Ict Security
Hi guys, we are running a Bind 9.x Server, everything is going fine. Under particular heavy load mometns, with some hundreds of concurrent queries coming in, sometime Bing stops answering for some seconds or answer with important delays. But, when i try to query the same server/same Bind on a NIC