Reply

Howto configure INFOBLOX to reply fast to unknown DNS queries

[ Edited ]
josefcoprieto
Techie
Posts: 3
2361     0

Hi all,

 

we need to configure our infoblox devices to reply to unknown DNS queries before 5 secons. We have been navagating throught the different options but we can not find it.

 

Do you know if it is possible?

 

Thanks in advance!

Jose

Re: Howto configure INFOBLOX to reply fast to unknown DNS queries

Expert
Posts: 227
2362     0

It sounds like you have misconfigured something, it should respond much faster than that.

 

Either you are forwarding queries to a server that is unreachable or your system is unable to contact the root servers on the Internet.

 

If either the above is true and you can't fix it, then the easiest/fastest approach is to define an internal root domain. Simply define a new zone called "." (no quotes) and then it will respond to any unknown queries with NXDOMAIN. Note that this will also prevent resolving Internet names.

Paul Roberts
PCN (UK) Ltd

All opinions expressed are my own and not representative of PCN Inc./PCN (UK) Ltd. E&OE

Re: Howto configure INFOBLOX to reply fast to unknown DNS queries

GHorne Community Manager
Community Manager
Posts: 248
2362     0

You can also just disable recursion on that resolver.

Re: Howto configure INFOBLOX to reply fast to unknown DNS queries

josefcoprieto
Techie
Posts: 3
2362     0

Hi @paulr, thanks for your reply.

 

yes, this Infoblox has no access to internet and is not forwarding querires.

In our test, we have noticed that the delay is about 16 seconds qhen we querie for a unknown fwdn. And customer systems needs that the reply must be less than 5 seconds.

 

I think that your solution about root domain will be the better for us.

 

We will try it.

 

Thanks

Jose

Re: Howto configure INFOBLOX to reply fast to unknown DNS queries

josefcoprieto
Techie
Posts: 3
2362     0

Thanks @GHorne, for your reply.

 

I think that idea is nice too. We will check it.

 

thanks,

jose

Showing results for 
Search instead for 
Do you mean 

Recommended for You