Skip to content

Conversation

@b4ldr
Copy link
Contributor

@b4ldr b4ldr commented Mar 16, 2015

This change disables, the following parameters as they are not relevant in authoritative only server and where causing high CPU usage

  • dnssec-validation
  • dnssec-lookaside

I have also changed the default value for dnssec-lookaside, this gives recursive operators a method of disabling dnssec-lookaside. I have added an additional parameter for bindkeys_file instead of having one hard coded in server.conf. the one you have in your config dose not exist on ubuntu 12.04 LTS however the default one (bind.keys) does. I also changed the default of dnssec-validation to auto which i think makes more sense then yes.

Finally it looks like this pull request has some documentation and a few other small fixes missed from my last pull

John

* ensure that the named dir exists
* add bind group
* change some defaults and only add dnssec resolver functions if we
* recurse

bla
@b4ldr
Copy link
Contributor Author

b4ldr commented Mar 14, 2017

Just noticing this old pull request and wondered if it received any review

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant