dns-over-tls queries?

Havard Eidnes he at uninett.no
Tue Feb 5 12:26:19 UTC 2019


Hi,

following up on my own message:

> Feb  4 16:00:56 myname unbound: [22507:0] info: a.b.c.d null TYPE0 CLASS0 REFUSED 0.000000 1 12

Using kdig, I see the same problem client-side:

% kdig -4 @a.b.c.d:853 vg.no. a +tls
;; WARNING: response doesn't have question section
;; TLS session (TLS1.2)-(ECDHE-SECP256R1)-(RSA-SHA512)-(AES-256-GCM)
;; ->>HEADER<<- opcode: QUERY; status: REFUSED; id: 54977
;; Flags: qr rd; QUERY: 0; ANSWER: 0; AUTHORITY: 0; ADDITIONAL: 0

;; Received 12 B
;; Time 2019-02-05 13:22:00 CET
;; From a.b.c.d8 at 853(TCP) in 14.9 ms
%

Hrm, doesn't work as advertised.  Need to dig deeper.  Hints?

Regards,

- Håvard



More information about the Unbound-users mailing list