[Yeti DNS Discuss] Observation on Large response issue during Yeti KSK rollover
hsalgado at nic.cl
Wed Aug 2 16:54:48 UTC 2017
On 09:35 02/08, Davey Song(宋林健) wrote:
> Hi folks,
> I put a article to introduce some observations during Last Yeti KSK rollover
> which is finished in this May.
> The conclusion is quoted as follows:
> The monitoring result shows that statistically large packets will trigger
> higher failure rate (around 0.7%) due to IPv6 fragmentation issues, which
Sorry, maybe I'm misunderstanding, but I see 2,920 failures out of
42,459 total queries in the table, so that accounts on almost 7% !
> accordingly increase probability of retries and TCP fallback. It should be
> noted that during the KSK rollover and other experience in Yeti testbed, no
> error report was spotted directly due to packet size problem (less than 1%
> likely to cause timeout). So it is should be further observed and evaluate
> the impact of large packets issue. To avoid less than 1% anomaly, we can
> consider is it worthwhile to take any measures to this issue? Does it sound
> like a plan to use stateful connection in the first place to transmit DNS
> like TCP or HTTP for queries causing large response, or
> fragmenting the packets in the DNS layer?
> Best regards,
> discuss mailing list
> discuss at lists.yeti-dns.org
-------------- next part --------------
A non-text attachment was scrubbed...
Size: 801 bytes
Desc: not available
More information about the discuss