We could consider shipping a list of negative trust anchors as part of
systemd-resolved-dnssec, but longer term it would be better to fix
individual projects/environments (like LXD) directly to do the right
thing for private, unsigned zones. Keeping DNSSEC exceptions close to
its origin.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2119652

Title:
  systemd-resolved-dnssec breaks name resolution on lxd domain

To manage notifications about this bug go to:
https://bugs.launchpad.net/lxd/+bug/2119652/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to