Periodic Query Spikes and Cache Bypass in dnscrypt-proxy with DoH Server #2790
vlasiuk-everstake
started this conversation in
Potential issues
Replies: 1 comment
-
(We?) Looks like even Cloudflare DNS is having trouble resolving the name of that DoH server. Check the configuration of the authoritative DNS server for that domain, and that the bootstrap servers are not firewalled. Or, in order to not have to resolve the name, include the IP addresses in the stamp or use DNSCrypt. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Hello,
We are currently using dnscrypt-proxy version 2.1.7 with a custom DoH (DNS-over-HTTPS) server powered by CoreDNS . The configuration file in txt ([dnscrypt-proxy.txt]) dnscrypt-proxy.txt is attached for reference.
Every 12 hours, we observe a significant spike in the number of queries being sent to our DoH server. A screenshot of the query pattern is also attached for clarity.

We increased max_clinets from 250 to 10k but we have an issue
[WARNING] Too many incoming connections (max=10000)
Dnscypt-proxy is trying to resolve DNS (doh.****.com) of our DOH server.
Despite enabling caching in dnscrypt-proxy, the queries seem to bypass the cache entirely.
We suspect there might be an issue with the configuration or behavior of dnscrypt-proxy, but we are unable to pinpoint the root cause. Could you help us identify and resolve this issue?
Beta Was this translation helpful? Give feedback.
All reactions