[Dnsmasq-discuss] DNSSEC: Answer for local hosts with AD flag set?

Ernst Ahlers ea at ct.de
Fri Oct 2 13:00:14 BST 2015


> I don't think this is going to be possible.

OK, so AVM would probably have to switch to Unbound. Or they'll just
choose to ignore the IPv4 NAT penalty...

> BTW, AVM seem to have DNSSEC validation on (at least) their 7390 [1].

Thanks for the hint!

Funny, our 7390 with FritzOS-Beta 6.36 running on DT-VDSL shows no
sign at all of DNSSEC, even if I set it to use validating servers. But
then this option might be tied to the internet provider selection...
Seems I'll have to bugger AVM again. :-D

> I would contact them and politely request they quickly start
> signing their myfritz platform. Chances are they might even do
> that. ;-)

Oh, since they spoke of probably activating DNSSEC validation I'm
quite sure it's already on their timeline. :)

Anyway, many thanks for taking a look at my query!

Ernst

-- 
Ernst Ahlers, Redakteur/Editor
PGP-Key-ID: 0x265E 3662, plain text preferred

c't - Magazin für Computertechnik
www.ct.de
Karl-Wiechert-Allee 10
D-30625 Hannover, Germany
Phone +49 (0)511 5352 300
Fax +49 (0)511 5352 417

Heise Medien GmbH & Co. KG
Registergericht: Amtsgericht Hannover HRA 26709
Persönlich haftende Gesellschafterin:
Heise Medien Geschäftsführung GmbH
Registergericht: Amtsgericht Hannover, HRB 60405
Geschäftsführer: Ansgar Heise, Dr. Alfons Schräder

Katze 5e



More information about the Dnsmasq-discuss mailing list