Univention Bugzilla – Full Text Bug Listing |
Summary: | bind9: Make "max-socks" configurable via UCR and increase the default limits | ||
---|---|---|---|
Product: | UCS | Reporter: | Michael Grandjean <grandjean> |
Component: | DNS | Assignee: | Daniel Tröder <troeder> |
Status: | CLOSED FIXED | QA Contact: | Felix Botner <botner> |
Severity: | normal | ||
Priority: | P5 | CC: | gohmann, siemer, troeder |
Version: | UCS 4.4 | ||
Target Milestone: | UCS 4.4-1-errata | ||
Hardware: | Other | ||
OS: | other | ||
What kind of report is it?: | Bug Report | What type of bug is this?: | 5: Major Usability: Impairs usability in key scenarios |
Who will be affected by this bug?: | 2: Will only affect a few installed domains | How will those affected feel about the bug?: | 5: Blocking further progress on the daily work |
User Pain: | 0.286 | Enterprise Customer affected?: | Yes |
School Customer affected?: | Yes | ISV affected?: | |
Waiting Support: | Yes | Flags outvoted (downgraded) after PO Review: | |
Ticket number: | 2019071821000817 | Bug group (optional): | |
Max CVSS v3 score: |
Comment 1
Michael Grandjean
2019-05-16 15:05:20 CEST
Happened again, the system stopped working due to named problems: named[6745]: socket: file descriptor exceeds limit (4097/4096) I increase the feel flag since it is critical if bind stops working on a DC. The three init scripts have been adapted to append "-S #max-socks' when starting named, in case the new UCRV "dns/max-socks" is set. The default is "unset", and then nothing changes. Using "LimitNOFILE=..." in the systemd unit is not necessary, because the named process raises the limit on its own. Using a value below "30" for dns/max-socks leads to not named not starting. $ ucr set dns/max-socks=65000 → Sep 3 09:17:40 m66 named[20909]: using up to 65000 sockets → Sep 3 09:17:42 m66 named[20937]: using up to 65000 sockets $ucr unset dns/max-socks Sep 3 09:29:31 m66 named[22488]: using up to 4096 sockets Sep 3 09:29:32 m66 named[22517]: using up to 4096 sockets [4.4-1] 4544400f79 Bug #49493: reorder code to reduce diff between init scripts [4.4-1] c5348f17d9 Bug #49493: allow setting the maximum number of open sockets via UCR [4.4-1] 46efeb32d0 Bug #49493: advisory update univention-bind (13.0.1-7) SDB article (made invisible for now): https://help.univention.com/t/bind9-stops-to-operate-socket-file-descriptor-exceeds-limit/12905 OK - univention-bind dns/max-socks OK - yaml SDB There are always two named processes running in UCS. When restarted, they write their new configuration to /var/log/syslog, including a line using up to _____ sockets. remove that sentence, in case of a samba DC there is only named process, to complicated to explain ... (In reply to Felix Botner from comment #5) > SDB > > There are always two named processes running in UCS. When restarted, they > write > their new configuration to /var/log/syslog, including a line using up to > _____ > sockets. > > remove that sentence, in case of a samba DC there is only named process, to > complicated to explain ... Done. OK |