> "Dnssec-trigger reconfigures the local unbound DNS server."

DNSSEC-Trigger is bundled with Unbound.

What it does it to verify that DHCP-obtained forwarders do DNSSEC,
updating /etc/resolv.conf to point to the validating Unbound on
localhost if not. If neither work, DNSSEC-Trigger attempts to query an
open resolver over TCP ports 80 and 443, hoping to be able to do DNSSEC
that way.

Works pretty well.

        -JP
_______________________________________________
dns-operations mailing list
[email protected]
https://lists.dns-oarc.net/mailman/listinfo/dns-operations
dns-jobs mailing list
https://lists.dns-oarc.net/mailman/listinfo/dns-jobs

Reply via email to