[Dnsmasq-discuss] Reverse lookups stopped working with DNSSEC enabled

Simon Kelley simon at thekelleys.org.uk
Mon Apr 14 21:55:13 UTC 2025



On 14/04/2025 15:31, Opty wrote:
> On Fri, Apr 11, 2025 at 6:30 PM Geert Stappers <stappers at stappers.nl> wrote:
>> At dnsmasq side:  enable query logging.
>> At "client side" example given: `host 158.194.80.13  192.168.1.254`,
>> that is to force `host` to use dnsmasq (address taken from above config)
>> Forcing a DNSserver rules out that "/etc/resolv.conf magic" is being
>> used.
> 
> With query logging enabled and DNSSEC re-enabled, it... works! o_O
> 
> I will test further but now it seems like either an ISP issue or my
> non-dnsmasq configuration issue. BTW, /etc/resolv.conf contains:
> 
> search redacted.lan
> nameserver 127.0.0.1
> 
> Yes, I'm testing directly on the machine where dnsmasq runs, could it matter?

Shouldn't matter.

I'm guessing the original problem was lost replies from upstream, or 
failure to accept queries upstream via TCP. This is handled better in 2.91

Cheers,

Simon.

> 
> Regards,
> Opty
> 
> P.S. Could anyone set Reply-To to the list address?
> 
> _______________________________________________
> Dnsmasq-discuss mailing list
> Dnsmasq-discuss at lists.thekelleys.org.uk
> https://lists.thekelleys.org.uk/cgi-bin/mailman/listinfo/dnsmasq-discuss




More information about the Dnsmasq-discuss mailing list