> "Dnssec-trigger reconfigures the local unbound DNS server."
DNSSEC-Trigger is bundled with Unbound.
What it does it to verify that DHCP-obtained forwarders do DNSSEC,
updating /etc/resolv.conf to point to the validating Unbound on
localhost if not. If neither work, DNSSEC-Trigger attempts to query an
open resolver over TCP ports 80 and 443, hoping to be able to do DNSSEC
that way.
Works pretty well.
-JP
_______________________________________________
dns-operations mailing list
[email protected]
https://lists.dns-oarc.net/mailman/listinfo/dns-operations
dns-jobs mailing list
https://lists.dns-oarc.net/mailman/listinfo/dns-jobs