Re: recursive clients quota maxes out when dnssec-validate and dlv-lookaside set to auto

2011-12-20 Thread Phil Mayers
On 12/19/2011 11:14 PM, Mark Jeftovic wrote: And it sorta almost works. Except what happens when we restart or reconfigure bind is that the number of recursive clients skyrockets to the maximum (currently the default 1000) in under a minute and then everything starts failing or timing out with a

recursive clients quota maxes out when dnssec-validate and dlv-lookaside set to auto

2011-12-19 Thread Mark Jeftovic
version: 9.8.1-P1 We're seeing a lot of "no more recursive clients: quota reached"" log messages on a dns resolver we're running when we try to set dnssec-validate and dlv-lookaside set to auto (and queries time out). Before the change, we're running this: dnssec-enable yes; dnssec-validation