On Wed, 1 Apr 2009, alexus wrote:

On Wed, Apr 1, 2009 at 5:52 PM, John Hardin <jhar...@impsec.org> wrote:

How fast are non-SA DNS queries on that box? If they take ten seconds to return an answer, SA is not the culprit.

without dns they are 0.1 - 1.5s, with DNS they are ~7s

...what precisely do you mean by "with DNS" and "without DNS"?

Review your /etc/resolv.conf to see if the first resolver listed is
responding quickly. You may want to rearrange them.

I use local caching, so it's as fast as it gets

So /etc/resolv.conf has 127.0.0.1 as the only resolver?

--
 John Hardin KA7OHZ                    http://www.impsec.org/~jhardin/
 jhar...@impsec.org    FALaholic #11174     pgpk -a jhar...@impsec.org
 key: 0xB8732E79 -- 2D8C 34F4 6411 F507 136C  AF76 D822 E6E6 B873 2E79
-----------------------------------------------------------------------
  For those who are being swayed by Microsoft's whining about the
  GPL, consider how aggressively viral their Shared Source license is:
  If you've *ever* seen *any* MS code covered by the Shared Source
  license, you're infected for life. MS can sue you for Intellectual
  Property misappropriation whenever they like, so you'd better not
  come up with any Innovative Ideas that they want to Embrace...
-----------------------------------------------------------------------
 Today: April Fools' day

Reply via email to