March 25 2011

A lot of the headache of making a recursive DNS server is dealing with misconfigured DNS servers. Let's take the example of a DNS server giving us an empty packet. This can mean various things: Right now, one of the three DNS servers for is broken: Any queries sent to it result in a REFUSED reply.

There are a number of ways of handling this better than Deadwood currently does. What I will probably end up doing is giving these kinds of answers as low of a TTL as I can get away with.

This will all be done on April 15. This is a more important bug than the issue with AXFR-over-UDP which I mentioned yesterday.

