Andreas, > (that rebuilds the configfile an reloads unbound) That's easy enough, indeed, but reloading Unbound destroys forwarders added by DNSSEC-Trigger as well as any local_data that's been added on the fly: not good enough. -JP