[Pdns-users] Successful, yet incomplete AXFR to BIND9 slave

Christian Hofstaedtler ch at zeha.at
Thu Sep 9 08:07:54 UTC 2010


Nikolas,


* Nikolaos Milas <nmilas at admin.noa.gr> [100909 09:40]:
>    Hi Bert,
> 
>    Trying to find a solution, I removed from LDAP both the record that
>    appeared last in AXFR and the one after it, and then retried. This time
>    the AXFR set contained as a last record the next in sequence, but still
>    contained the same number of records. So, the transaction seems as if AXFR
>    table is limited in size and can only contain a particular number of 
>    entries: 510 records. When this limit is reached, AXFR table is finalized
>    and sent.

Can you try a manual ldapsearch against the subtree which would
include all the records in the AXFR?
510 sounds very much like we're hitting the sizelimit of the remote LDAP server 
(slapd has a default sizelimit of 500). While pdns explicitly requests 
an unlimited list, the remote might still truncate it.
If this is the case, increasing the LDAP server's sizelimit will
probably fix this issue.

Christian

-- 
christian hofstaedtler



More information about the Pdns-users mailing list