[Dnsmasq-discuss] losing RRSIGS in dnsmasq 2.73rc3

Simon Kelley simon at thekelleys.org.uk
Thu Apr 2 23:06:47 BST 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 02/04/15 22:17, Dave Taht wrote:

> Are you giving dnsmasq the --dnssec-debug flag? If so you'll still
> get a reply (wo an "ad" flag) when the validation fails. That
> (combined with the second reply coming from cache) would fit the
> data provided. If you remove the dnssec-debug flag, you should get
> consistent SERVFAIL replies.
> 
>> No dnssec-debug.

Then I'm mystified. It's not behaving in the same way here.


Cheers,

Simon.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (GNU/Linux)

iEYEARECAAYFAlUdvXcACgkQKPyGmiibgrfBjwCdGwnRMLe8VkeZrbKFX1ODJXaG
klQAoIlPPf9qkwSjpJnVVhQyixvSQCUi
=rK/E
-----END PGP SIGNATURE-----



More information about the Dnsmasq-discuss mailing list