OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: Possible MX Lookup/Ordering Issue

From: Victor Duchovni (Victor.DuchovniMorganStanley.com)
Date: Thu Nov 01 2007 - 09:28:31 CDT


On Thu, Nov 01, 2007 at 10:17:42AM -0400, Jorey Bump wrote:

> ; <<>> DiG 9.3.4-P1 <<>> mx bobich.net
> ;; global options: printcmd
> ;; Got answer:
> ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 24305
> ;; flags: qr rd ra; QUERY: 1, ANSWER: 65, AUTHORITY: 2, ADDITIONAL: 4
>
> ;; QUESTION SECTION:
> ;bobich.net. IN MX

Wow, 65 MX records, and the response is truncated with UDP and requires a
TCP query. The OP is detonating H-bombs on foot. 2-5 MX hosts are enough,
if you need more (equal weight to spread the load), get a load-balancer
that either splits TCP traffic or randomizes DNS responses with short
TTLs.

--
        Viktor.

Disclaimer: off-list followups get on-list replies or get ignored.
Please do not ignore the "Reply-To" header.

To unsubscribe from the postfix-users list, visit
http://www.postfix.org/lists.html or click the link below:
<mailto:majordomopostfix.org?body=unsubscribe%20postfix-users>

If my response solves your problem, the best way to thank me is to not
send an "it worked, thanks" follow-up. If you must respond, please put
"It worked, thanks" in the "Subject" so I can delete these quickly.