Re: DoT forwarder: controlling timeout before fallback to recursion ?
Michael Richardson <[email protected]> Sun, 03 May 2026 13:37:32 -0400
| Newsgroups | gmane.network.dns.bind.user |
|---|---|
| Message-ID | <[email protected]> |
pgnd <[email protected]> wrote: > but, when the VM is unreachable, Bind9's fallback to direct recursion > has a very noticeable delay. in-browser reponse goes from un-noticeable > to ~ 3 seconds. I'm curious if it's the same if the VM is up, but unbound is not running, so you'd get an instant port unreachable, rather than suffer through ARP/ND failures for the host. > recommending upgrade to ?= v9.3.0, and using adaptive forwarder > selection. but, iiuc, adaptive selection only helps when forwarders > respond slowly -- not when completely unreachable. I don't know the answer here, but if this VM is critical path, maybe it should be redundant/resilient? Why do you want this cache in place? Is it performance, anonynimity, ?? -- ] Never tell me the odds! | ipv6 mesh networks [ ] Michael Richardson, Sandelman Software Works | IoT architect [ ] [email protected] http://www.sandelman.ca/ | ruby on rails [ ] My working hours and your working hours may be different. [ ] Please do not feel obligated to reply outside your normal working hours [ -- Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list.
signature.asc
(application/pgp-signature, 487 B)
-----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEbsyLEzg/qUTA43uogItw+93Q3WUFAmn3h9wACgkQgItw+93Q 3WXRpAgAnlNyPLhRaInAgWzX/EGcG575HGLGmxBM//cuNOAUMuuxoyM97Ggv+2w0 yPZoP0aL/7lek/BxXUKIGW1GQeC+04bzKiSpTul8JJDz+2lW4h3Fut8UOMef/Mf/ GNz+X4jmCYB3mClJ0FWkyzQv6Z7YC6UmGGnD0To31Ezzbjiwr3yCjyywaRs6PoYR L/TZnLLTovL913532VMzcSGvt3wD4AA5gbWgdLEl1ExPMSWF6dW6dWpnmI4Pnwm+ 7JtDIXxFPtbcR+uOE7IhfnHVXPF2eg3o2YyPokAYc9EIpgzjpKF/l1uIWDNOz1rn 7sEwqW/sSFhMd8W3/9gyxY65Bp77xw== =y2Of -----END PGP SIGNATURE-----