Re: Bind 9.10.3: forwarded zone on a recursive server

2017-11-19 Thread Ivan Kurnosov
ur own zone and distribute trust anchors for them. > > Mark > > On 20 Nov 2017, at 12:45 pm, Ivan Kurnosov wrote: > > > > > > Found it. It's caused by `dnssec`. If I enable it - the root servers are > not being touched. > > > > Then the question i

Re: Bind 9.10.3: forwarded zone on a recursive server

2017-11-19 Thread Ivan Kurnosov
err: a typo in the last email `s/enable/disable/` On 20 November 2017 at 14:45, Ivan Kurnosov wrote: > Found it. It's caused by `dnssec`. If I enable it - the root servers are > not being touched. > > Then the question is - can I still have `dnssec` and somehow > internet-a

Re: Bind 9.10.3: forwarded zone on a recursive server

2017-11-19 Thread Ivan Kurnosov
Found it. It's caused by `dnssec`. If I enable it - the root servers are not being touched. Then the question is - can I still have `dnssec` and somehow internet-availability-tolerant configuration? On 20 November 2017 at 14:36, Ivan Kurnosov wrote: > I'm having a really simple

Bind 9.10.3: forwarded zone on a recursive server

2017-11-19 Thread Ivan Kurnosov
he packets I captured that are being sent to the internet https://i.stack.imgur.com/TphcP.png I also asked this question at https://serverfault.com/q/884196/45086 So the question is: what do I else need to do to make this server not recurse for the forwarded-only zone? -- Wi