Thanks for your answer.
I would like to discuss the remaining content in more detail: Please share
your opinion, the way you are doing
- Why have many dns soft, dns system don't support log query.
- Is monitoring log query on DNS Authoritive server really necessary? We
should or shouldn't log query on DNS Server. Enabling tcpdump on the server
reduces DNS server performance like enabling query log or not like ???
- How to monitor abnormal, and tracing in DNS without monitoring query
logs:
On Wed, Jun 3, 2020 at 11:51 PM Anand Buddhdev <anandb at ripe.net> wrote:
> On 03/06/2020 17:55, Bac Nguyen Huy via nsd-users wrote:
>
> Hi Bac,
>
> > So, my asks: How to config log query in NSD without using TAP.
> > And, why have many dns soft, dns system don't support log query.
> > Is monitoring log query on DNS Authoritive server really necessary?
> > How to monitor abnormal, and tracing in DNS without monitoring query
> logs.
>
> NSD doesn't have any query logging feature. You can log queries by
> running tcpdump on the server, with an appropriate filter rule to
> capture UDP and TCP packets to port 53.
>
> Regards,
> Anand
>
--
_____________________________________
Mr Nguyen Huy Bac
DNS Administrator
Tel: +084.2435564944
Email: huybac.nguyen at gmail.com
Skype: huybac.nguyen at hotmail.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL:
<http://lists.nlnetlabs.nl/pipermail/nsd-users/attachments/20200604/1297716a/attachment.htm>