[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: LDAP server redundancy



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Okke Timm wanted us to know:

>> elementary round robin will be used.
>Only if the local resolver doesn't cache the results. DNS is the worst 
>place for load balancing. 

Set the TTL to something like 10 seconds and the cacheing DNS's will
retire that record very shortly after it looks up.  Adjust 10 seconds 
up or down to fit your needs.  Zero is a valid TTL as well.

>OT rant: BIND is a bug-ridden (countless times exploited), memory hogging  
>piece of bloatware that should have been replaced by something small and 
>secure a long time ago. Get rid of it.

Have you looked around for anything else that can do what bind can?  I
have.  djbdns is the closest but his licensing prohibits it from being
included in any decent distro.  I am unsure if I like the concept of
using rsync to do zone transfers.
- -- 
Blue skies...	Todd 	Public key: http://www.mrball.net/todd.asc
...and I will strike down upon thee with great vengeance and furious
 anger, those who attempt to poison and destroy my binaries, and you 
    will know my name is root, when I lay my vengeance upon thee.
   Linux kernel 2.4.19-16mdk   1 user,  load average: 0.01, 0.01, 0.00
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)

iD8DBQE98WtPIBT1264ScBURApXFAJwLKmH0JcxkXKloT0evF+U3lYXEsACg2qqs
odRW3rXloWLItezMYBn+A2w=
=+BOx
-----END PGP SIGNATURE-----