On 20/03/2020 10:56, Giovanni Vecchi via Pdns-users wrote:
@Brian: my bad, my local domain isn't an ".local" one but ".sec", so please consider domain.sec as root domain The current behaviour is that public root domain are queried for every *.domain.sec from recursor instead the authoritative one!
My conf:

config-dir=/etc/powerdns
local-address=0.0.0.0
local-port=53
setgid=pdns
setuid=pdns
allow-from=0.0.0.0
logging-facility=1
loglevel=9
quiet=no
version-string=Mind your own business…
webserver=yes
webserver-address=0.0.0.0
webserver-allow-from=127.0.0.1
webserver-port=8082
api-key=XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
forward-zones=domain.sec=127.0.0.1:5300 <http://127.0.0.1:5300>

Do no queries arrive at 127.0.0.1:5300 at all?  What version of pdns-recursor are you using?

It's possible that you need to set a negative trust anchor for domain.sec.  See:

https://doc.powerdns.com/recursor/dnssec.html#negative-trust-anchors


_______________________________________________
Pdns-users mailing list
Pdns-users@mailman.powerdns.com
https://mailman.powerdns.com/mailman/listinfo/pdns-users

Reply via email to