You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
A new zone type, forward-auth-zone perhaps, that will cache records from the primary (it is forwarding too), but will answer authoritatively downstream (i.e. AA bit set).
The text was updated successfully, but these errors were encountered:
I like this idea. What about adding a boolean config option to the existing forward (or stub..?) config section called authoritative-answer which sets the AA bit when the forwarder is used. Default should be off. AA bit should be stored in cache.
This probably also requires a new ACL type, something like allow_authoritative_only. This behaviour can already be achieved using local-zones (acl /0 allow + local-zone block root + local-zone transparent for the authoritative zones) but that is, well.., not really user-friendly.
A new zone type,
forward-auth-zone
perhaps, that will cache records from the primary (it is forwarding too), but will answer authoritatively downstream (i.e. AA bit set).The text was updated successfully, but these errors were encountered: