On Sat, 17 May 2014 01:34:58 +0200
Karsten Bräckelmann <guent...@rudersport.de> wrote:

> I don't know whether DOB limits DNS queries of a single host.

> However, if you *never* get that rule firing, the NXDOMAIN result may
> indicate exceeding a query limit. Do you use a local caching DNS
> resolver, or does SA use your upstream ISP's one, along with a million
> other SA instances?

Excellent point.  I _used to_ run a local DNS cache, but got rid of it a
few months ago, in the name of simplicity.  Was that a good or bad thing
to do in the current context?

-- 
Please *no* private copies of mailing list or newsgroup messages.

Reply via email to