From owner-freebsd-isp@FreeBSD.ORG Thu Sep 18 11:58:32 2003 Return-Path: Delivered-To: freebsd-isp@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 0692C16A4B3 for ; Thu, 18 Sep 2003 11:58:32 -0700 (PDT) Received: from perrin.nxad.com (internal.nxad.com [69.1.70.251]) by mx1.FreeBSD.org (Postfix) with ESMTP id E8D8943FB1 for ; Thu, 18 Sep 2003 11:58:30 -0700 (PDT) (envelope-from sean@nxad.com) Received: by perrin.nxad.com (Postfix, from userid 1001) id 485D22105E; Thu, 18 Sep 2003 11:58:30 -0700 (PDT) Date: Thu, 18 Sep 2003 11:58:30 -0700 From: Sean Chittenden To: "W.D. McKinney" Message-ID: <20030918185830.GD79031@perrin.nxad.com> References: <20030917081828.GC43577@mccaffrey.house.so14k.com> <48322287.20030917233959@blue.calx.nl> <1063835258.6538.245.camel@papa.wdm.com> <20030918130406.GA68759@mccaffrey.house.so14k.com> <20030918183941.GB79031@perrin.nxad.com> <1063910930.12694.113.camel@papa.wdm.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <1063910930.12694.113.camel@papa.wdm.com> X-PGP-Key: finger seanc@FreeBSD.org X-PGP-Fingerprint: 3849 3760 1AFE 7B17 11A0 83A6 DD99 E31F BC84 B341 X-Web-Homepage: http://sean.chittenden.org/ User-Agent: Mutt/1.5.4i cc: freebsd-isp@freebsd.org Subject: Re: Re[2]: Verisign fun. X-BeenThere: freebsd-isp@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Internet Services Providers List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 18 Sep 2003 18:58:32 -0000 > We just moved from bind9 to djbdns, and we we were running djbdns > previously so we had about 4 months under bind9. I prefer djbdns > but as we also moved to FreeBSD I trust it performs even better :-) Don't get me wrong, I love djbdns's security record and its low maintenance. After having used it for 3 years without real incident other than random ISPs being periodically unable to lookup DNS info from my name servers and said performance problem, I'm not knocking djbdns... but under higher load, it falls apart (big issue for me). I love that BIND has an actual config file though and lets you do nifty, tricky things if need be. With bind9-dlz, other than security concerns, I don't miss djbdns at all (though it is more complex than djbdns). > What is the query volume you mentioned anyway ? More than 500 requests per second for authoritative DNS info. I never had a problem with dnscache, but never pushed it that hard either. -sc -- Sean Chittenden