DNSTAP overload condition logging

Carsten Strotmann carsten at strotmann.de
Sat Nov 20 06:19:47 UTC 2021


Hi Chris,

Chris Buxton <clists at buxtonfamily.us> writes:

> [[PGP Signed Part:Undecided]]
> Hi Carsten,
>
> From our reading of the code, it appears that when the buffer 
> fills
> up, it refuses to accept new entries. Older events are not
> overwritten, but newer events are refused. The 
> fstrm_iothr_submit()
> function can return success, failure, or “fstrm_res_again”, 
> which
> indicates the queue is full.
>
> BIND stats reports two counters, dnstapSuccess and 
> dnstapDropped. It
> appears that the dropped counter is incremented for either 
> failure
> condition.
>

Thanks, that's what I was looking for :)

Greetings from Iceland

Carsten


More information about the bind-users mailing list