[dns-operations] Forcing BIND to randomly expire records from cache ahead of time

Hauke Lampe lampe at hauke-lampe.de
Thu Jul 3 23:30:42 UTC 2014


On 04.07.2014 00:19, Evan Hunt wrote:

>> http://tools.ietf.org/id/draft-wkumari-dnsop-hammer-00.txt
> 
> This is implemented in BIND 9.10 as the "prefetch" option.

I was about to recommend BIND's prefetch option but I'm not sure that it
would help in a "once per minute" case as the configurable trigger TTL
is limited to 10 seconds maximum.

What's the reason for keeping the trigger so short? I can imagine valid
use cases for even earlier prefetching and don't see significant dangers
except for cache memory usage.


Hauke.




More information about the dns-operations mailing list