IXFR of a new NSEC3 chain causes temporary performance drop
When fully updating the NSEC3 chain for a large zone via IXFR, there is a temporary loss of performance on the secondary server when answering DO=1 queries for nonexistent data (in other words, queries that require returning NSEC3 data).