Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 3 Apr 2002 08:52:21 -0600
From:      D J Hawkey Jr <hawkeyd@visi.com>
To:        Ralf Durkee <ralf@net.rd1.net>
Cc:        freebsd-stable@FreeBSD.ORG
Subject:   Re: named connections "in vain"
Message-ID:  <20020403085221.A20643@sheol.localdomain>
In-Reply-To: <200204031437.g33EbsKB038625@net.rd1.net>; from ralf@net.rd1.net on Wed, Apr 03, 2002 at 09:37:54AM -0500
References:  <20020403081630.A20450@sheol.localdomain> <200204031437.g33EbsKB038625@net.rd1.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Apr 03, at 09:37 AM, Ralf Durkee wrote:
> 
> > Date: Wed, 3 Apr 2002 08:16:30 -0600
> > From: D J Hawkey Jr <hawkeyd@visi.com>
> > To: stable at FreeBSD <freebsd-stable@FreeBSD.ORG>
> > Subject: named connections "in vain"
> >
> > I have the "log in vain" MIBs set on, and I get these messages, seemingly
> > whenever named queries an external server:
> >
> > Apr  3 07:36:41 sheol /kernel: Connection attempt to UDP 192.168.16.2:2303 from 192.168.16.2:53
> > Apr  3 07:37:45 sheol /kernel: Connection attempt to UDP 192.168.16.2:2311 from 192.168.16.2:53
> > Apr  3 07:37:50 sheol /kernel: Connection attempt to UDP 192.168.16.2:2312 from 192.168.16.2:53
> > Apr  3 07:38:00 sheol /kernel: Connection attempt to UDP 192.168.16.2:2313 from 192.168.16.2:53
> > Apr  3 07:38:20 sheol /kernel: Connection attempt to UDP 192.168.16.2:2314 from 192.168.16.2:53
> >
> > I can't figure out what named is trying to talk with. The only theory I can
> > come up with is that named is not waiting long enough for the forwarder to
> > reply, and does the query itself. When the forwarder does [finally] reply,
> > the connection has already been closed (either by named or ipf)? The Cricket
> > book (3rd ed.) isn't much help on this.
> 
> I think you you are very close in your evaluation, I also use log in vain,
> and came to similar conclusions, about these messages.  I also noticed that
> it happens for very slow and non-responsive named servers 
> (especially spammers if theirs a mail server involved)
> I think increasing the time-out value for your named to be longer than that
> of the forwarder would eliminate the  messages if you are concerned.

Thanks. How does one increase the time-out value? Don't tell me it's only
possible by tweaking the source - there doesn't appear to be a config file
option...

> -- Ralf Durkee

Dave

-- 
  ______________________                         ______________________
  \__________________   \    D. J. HAWKEY JR.   /   __________________/
     \________________/\     hawkeyd@visi.com    /\________________/
                      http://www.visi.com/~hawkeyd/


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020403085221.A20643>