[ratelimits] How to validate the use of RRL?
fenghe at nsbeta.info
Wed Nov 7 07:33:52 UTC 2012
I have the future questions about RRL that:
#1 what's the meanings of responses-per-second and window in the config?
#2 under which condition RRL rejects the query, and under which
condition it truncates the response?
#3 how to enable the log items for RRL? for example, I want to check
what IP and what domains are influenced by RRL.
于 2012-11-7 14:49, paul vixie 写道:
> add +notcp to your 'dig' command or else it will try with TCP when it
> gets TC=1 from RRL.
> it is intentionally difficult to simulate the conditions under which RRL
> is visible. if your test behaves the same way as a normal dns initiator
> would behave, your results will be reliable, by design of RRL.
More information about the ratelimits