Does Unbound use otherwise non-trustworthy data simply because it has valid DNSSEC signatures? I'm asking because of this recent dnsop thread: <https://mailarchive.ietf.org/arch/msg/dnsop/0bbEYp9RIGunDS4Vt_MvD2veMHg>