serve-expired seems to break flush_zone

2018-04-04 Thread Marc Branchaud via Unbound-users
Hi all, I have a simple forward-everything setup with serve-expired enabled: server: serve-expired: yes forward-zone: name: . forward-addr: X.X.X.X If I use "flush_zone ." to clear the cache, I still get cache hits for

RFC 7858 DNS Over TLS (Basic query)

2018-04-04 Thread SIMON BABY via Unbound-users
Hi, Do we have an existing package to support DNS over TLS mentioned in RFC 7858. Do we need any additional change in unbound library to deploy this additional security between client and recursive resolver? Rgds Simon

Re: auth-zone and forward-zone on unbound-1.7.0

2018-04-04 Thread W.C.A. Wijngaards via Unbound-users
Hi Guillame-Jean, On 04/04/18 11:41, Guillaume-Jean Herbiet via Unbound-users wrote: > Hi, > > While doing some experiments, I am facing an issue while mixing > auth-zone and forward-zone. This bug was just fixed after a redhat bugreport. The fix is in the code repository, this is the patch

auth-zone and forward-zone on unbound-1.7.0

2018-04-04 Thread Guillaume-Jean Herbiet via Unbound-users
Hi, While doing some experiments, I am facing an issue while mixing auth-zone and forward-zone. The server I was testing on was originally configured to forward requests to other servers (mainly to benefit from their cache): forward-zone: name: "." forward-addr: IP1 # redacted