DNSSEC validation on combined auth+recursive server

Mark Andrews marka at isc.org
Thu Jan 6 09:03:31 UTC 2011


	match-recursive is your friend.

In message <d10ad9b3ad1c82bceed74f9d3d71ccfb.squirrel at webmail.aminor.no>, "Eivi
nd Olsen" writes:
> Hello.
> 
> I seem to remember seeing something about DNSSEC validation not working
> when a BIND server is used both to serve the DNSSEC signed zone
> authoritatively, and as a resolver? Unfortunately, I haven't managed to
> find this information again, and now I'm wondering if it was all in my
> head.
> 
> (Yes, I know it's best practice to combine the authoritative + recursive
> functionality)
> 
> Is my mind playing tricks with me?
> 
> Regards
> Eivind Olsen
> 
> 
> _______________________________________________
> bind-users mailing list
> bind-users at lists.isc.org
> https://lists.isc.org/mailman/listinfo/bind-users
-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: marka at isc.org



More information about the bind-users mailing list