[88087] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: ORDB.ORG Outage [Suggested Procedures]

daemon@ATHENA.MIT.EDU (Elijah Savage)
Thu Jan 19 22:29:36 2006

Date: Thu, 19 Jan 2006 22:29:07 -0500
From: Elijah Savage <esavage@digitalrage.org>
To: Nanog <nanog@merit.edu>
In-Reply-To: <43D056AA.4010103@pubnix.net>
Errors-To: owner-nanog@merit.edu


Alain Hebert wrote:
> 
> Suggested Procedures:
> 
>    We use a script that validate the blacklisted services for:
> 
>       . reachability
>       . delay
>       . if any of our subnet is blacklisted
> 
>    And we also run a named exclusivly for caching requests...
> 
>    This way the mail system gets back on its feet by itself...
> 
>    Queries to loaded BL service are temporary disabled automatically...  
> until the service become more responsive.
> 
>    And we know, quite fast, if a client breach its contract and start 
> spamming...
> 
>    Not every antispam system are that open...  But if you have one...  
> It might be worth the 8 man hours to do a patch.
> 
>    Have fun...
> 
> Elijah Savage wrote:
> 
>>
>> Joseph W. Breu wrote:
>>
>>>
>>>
>>>
>>> I am seeing the same here.  We have disabled these lookups on our 
>>> mail servers.
>>>
>>>
>>> On Thu, 19 Jan 2006, Jon R. Kibler wrote:
>>>
>>>> Anyone else having ORDB.ORG Temp lookup failures? Seems to have been 
>>>> going on since about 1900 UTC today. Using web site to do lookups 
>>>> also fails or is VERY slow.
>>>>
>>>> Anyone know what is going on here?
>>>>
>>>> THANKS!
>>>> Jon Kibler
>>>>
>>>
>>
>> We have had to do the same was slowing down a bunch of mail.
> 
> 
I do run my own caching name server on the same exact box as a matter of 
fact. But I hear one of their servers is under DOS uttack but that is 
nothing official, still awaiting word.

-- 
http://www.digitalrage.org/
The Information Technology News Center

home help back first fref pref prev next nref lref last post