I have investigated the issue further, with the kind help of Peter. In a lab setting, all tested versions of the authoritative pdns server (2.9.22, 2.9.22.x.3 and 3.1-pre pulled from svn) behave correctly when faced with a non-RD query and return an authoritative NOERROR with the naked CNAME.
However, in the productive setup, the authoritative PowerDNS 2.9.22 returns a non-authoritative SERVFAIL even when faced with a non-RD query, but strangely only when the query was issued by a recursor. dig +norecurse gets an authoritative NOERROR. I have compared the queries in the wireshark-parsed form and did not see a difference. This is confusing. Any explanations? Greetings Marc -- ----------------------------------------------------------------------------- Marc Haber | "I don't trust Computers. They | Mailadresse im Header Mannheim, Germany | lose things." Winona Ryder | Fon: *49 621 31958061 Nordisch by Nature | How to make an American Quilt | Fax: *49 621 31958062 _______________________________________________ Pdns-users mailing list [email protected] http://mailman.powerdns.com/mailman/listinfo/pdns-users
