Unbound does not forward query to NSD

Daisuke HIGASHI daisuke.higashi at gmail.com
Thu Mar 25 16:29:32 UTC 2021


Hi,

Regardless of forwarder statements, Unbound tries to verify DNSSEC
"chain of trust" root -> net->mydomain.net" generating queries to
these nameservers.
If this is not desired, mark "insecure" on the target domain.

      ----
      domain-insecure: "mydomain.net"   ***
      forward-zone:
        name: "mydomain.net"
        forward-addr: ip_address_ns1
      ----

or if you have mydomain.net's real DNSSEC trust anchor, set it ?


More information about the Unbound-users mailing list