Computers are fast now. DNS servers can handle a lot more. Stop using 86400 as a default TTL for RRs and start using something more sane like 3600.


@sneak Except that long TTL value has basically nothing to do with performance and a whole lot more with resiliency. But values between 1h and two days are generally deemed within the acceptable range (depending on your Disaster Recovery Plan). So, whatever floats your boat.

Sign in to participate in the conversation
Infosec Exchange

A Mastodon instance for info/cyber security-minded people.