[Dnsmasq-discuss] Reverse lookups stopped working with DNSSEC enabled

Opty opty77 at gmail.com
Tue Apr 15 11:21:20 UTC 2025


On Tue, Apr 15, 2025 at 12:31 AM Simon Kelley <simon at thekelleys.org.uk> wrote:
> On 14/04/2025 15:31, Opty wrote:
> > With query logging enabled and DNSSEC re-enabled, it... works! o_O
> >
> > I will test further but now it seems like either an ISP issue or my
> > non-dnsmasq configuration issue. BTW, /etc/resolv.conf contains:
> >
> > search redacted.lan
> > nameserver 127.0.0.1
> >
> > Yes, I'm testing directly on the machine where dnsmasq runs, could it matter?
>
> Shouldn't matter.
>
> I'm guessing the original problem was lost replies from upstream, or
> failure to accept queries upstream via TCP. This is handled better in 2.91

Re-enabled DNSSEC on another machine running 2.90 and it works too so
I'm leaving it enabled there.

I will keep an eye on it and if anything changes, I'll let you know.

Regards,
Opty



More information about the Dnsmasq-discuss mailing list