Speaker
Description
Recursive resolvers can aggressively requery Root and TLD authoritative name servers when all authoritative name servers for a zone return REFUSED or SERVAIL. These resolution failures consist of the same query tuple <
QNAME, QTYPE, QCLASS>
being asked repeatedly at an unexpectedly high rate. The cause of the excessive traffic is almost always related to aggressive resolver retry logic and negative caching behavior. There are numerous conditions that can lead to resolution failures; regardless, this resolver behavior can significantly increase query load to the authoritative name servers.
This presentation will report on a longitudinal analysis of SERVFAIL-related requery traffic to two root name servers and the thirteen com/net authoritative name servers. The analysis will demonstrate that such traffic is consistent, persistent, and sizeable.
Talk duration |
---|