[ratelimits] How to validate the use of RRL?

Feng He fenghe at nsbeta.info
Wed Nov 7 07:33:52 UTC 2012


Hello,

I have the future questions about RRL that:

#1 what's the meanings of responses-per-second and window in the config?
#2 under which condition RRL rejects the query, and under which 
condition it truncates the response?
#3 how to enable the log items for RRL? for example, I want to check 
what IP and what domains are influenced by RRL.

Thanks again.


于 2012-11-7 14:49, paul vixie 写道:
> add +notcp to your 'dig' command or else it will try with TCP when it
> gets TC=1 from RRL.
>
> it is intentionally difficult to simulate the conditions under which RRL
> is visible. if your test behaves the same way as a normal dns initiator
> would behave, your results will be reliable, by design of RRL.



More information about the ratelimits mailing list