4

We have our email hosted at Google Apps, and have our DNS servers for the domain setup at Namecheap.

About a month ago our website went down (not a big deal, since it's most just a contact info page), but we were also unable to receive email for several hours. I narrowed down the cause to the DNS server at Namecheap. I contacted them via live chat and they said they were working on mitigating a DoS attack. The DNS servers came back up not too much longer.

Today, they are being hit by another DoS attack. This one is a big one (the previous one only seemed to effect a few people). We cannot receive ANY emails right now.

Our TTL on our MX servers is set to about 1 hour (I can't verify since all of Namecheap is down right now). Would setting a longer TTL help mitigate future problems like this?

Thanks!

HopelessN00b
  • 54,273
Peter
  • 41

2 Answers2

4

Q: Would setting a longer TTL help mitigate future problems like this?

A: Only for those hosts that have your MX record cached before the attack occurs. Any hosts that don't have it cached will need to look it up and will not be able to.

joeqwerty
  • 111,849
4

As Joequerty's already said, increasing the TTL can help as long as the sending servers already have your records cached. However on the flip side, if you need to update your MX records for some reason in the future, the more you increase the TTL the longer you'll have to wait before everyone will have picked up those changes. It can be a balance between the two and you have to decide which is more likely to happen, and in the event of it being required, which is likely to cause the most downtime.

Hopefully these two events are the exception rather than the rule, but personally I'd be thinking more about moving the domain to a more robust host than adjusting the MX records.