QUOTE (pinklloyd @ Oct 30 2008, 05:13 AM)

I'm just wondering if anyone else is having an issue with an extreme amount of connections to port 53? I just noticed it yesterday and this morning it's worse and seems to be coming from "EVERYWHERE"
What is the TTL set at on your zone file? If it's too low, the non-authoritative nameservers will need to ask it for records more frequently.
Does the traffic look legit or does it look like someone's DOSing or trying to exploit the daemon?