Name

DNSE-361 — Reply is too long, it could cause problem to resolver

Severity

A (alert)

Message text

%s reply size limit exceeded (%d > %d)

Description

Some resolvers are buggy and cannot handle replies that exceeds their internal buffer size. These limits are configurable and typical values used in resolvers are set as default values for 'ptr-reply-size' and 'adr-reply-size' configuration items.

Incoming reply contains set of addresses or PTR records that exceeds configured limit.

Whole answer is ignored and next server is tried.

See also

DNSE-790(6), DNSE-791(6), logging(7)

Authors

This man page is a part of Kernun Firewall.
Copyright © 2000–2023 Trusted Network Solutions, a. s.
All rights reserved.