[dns-operations] Best practices for Linux/UNIX stub resolver failover

Emmanuel Thierry ml at sekil.fr
Wed Apr 30 12:11:38 UTC 2014


Le 30 avr. 2014 à 12:47, Klaus Darilion a écrit :

> I agree with the bad behavior of the stub resolver.
> 
> On 22.04.2014 21:04, Chuck Anderson wrote:
>> 2. Use a local DNS daemon on every server with forwarders configured
>>    to the network's nameservers, and fix resolv.conf to 127.0.0.1.
> 
> The problem here is that you add another single point of failure - your local resolver. If it crashes and is not automatically restarted (which is the case for default Unbound and Bind installations) your DNS is broken too.

If your local resolver crashes, you might have more concerns to think about than your local DNS service (memory exhaustion on your server for instance).
Stable versions of unbound and bind run quite well during months or years without problems.

Best regards
Emmanuel Thierry




More information about the dns-operations mailing list