[ratelimits] Remarks regarding the Knot DNS 1.2.0 RRL implementation

Vernon Schryver vjs at rhyolite.com
Tue Mar 5 15:57:33 UTC 2013


> From: Matthijs Mekking <matthijs at nlnetlabs.nl>

> But that is not what we are doing. If there is a collision, we reset the
> counter, we don't group them together.

How do you detect a collision?
Do you keep the (qtype qname,client IP) in each bucket?
Unless you cheat as I do, that is more than 271 bytes in addition
to the counters and timers.


Vernon Schryver    vjs at rhyolite.com


More information about the ratelimits mailing list