Subject: Re: BIND9 very slow resolving external addresses
To: Amadeus Stevenson <>
From: Mipam <>
List: netbsd-users
Date: 12/10/2004 15:46:08
On Thu, 9 Dec 2004, Amadeus Stevenson wrote:

> Hello,
> I recently set up a simple ipnat/ipf firewall on a lan with a local
> caching DNS server, bind9 from pkg_add.
> It takes about a second or two to resolve external addresses, which is
> slowing things down a lot. Once cached it is much faster. Do you have
> any ideas what I am doing wrong? This happens from the gateway itself
> as well as from every natted box. I never used to have this problem
> before:
> # time nslookup
> Server:  localhost
> Address:
> Non-authoritative answer:
> Name:
> Address:
> Aliases:
>     2.62s real     0.00s user     0.00s system

Hmm, two seconds or maybe three in order to resolve a host or domain name 
isn't much imho. Sometimes it takes even longer, depending on the domain 
you wish to resolve. Try for example :-)
Btw, why don't you use dig instead of nslookup.