Its my understanding that EDNS is going to be required to exchange keys
properly for DNSSEC. Am I wrong? Is EDNS going to be a requirement in
the future?
Thanks in advance,
Curtis
On 3/18/2010 8:40 PM, Michael Fincham wrote:
Hi Bert,
Thanks for the expedient and comprehensive reply.
On
Hi Bert,
Thanks for the expedient and comprehensive reply.
On Thu, 2010-03-18 at 06:45 +0100, bert hubert wrote:
>
> The 'nothing but trouble' refers to the surprisingly large number of servers
> that when queried with EDNS on, either provide no answer, return a SERVFAIL
> or a malformed answer.
On Thu, Mar 18, 2010 at 03:48:48PM +1300, Michael Fincham wrote:
> Looking at the source it seems in 3.2 an option "disable-edns=no" was
> added which turns EDNS support on. A cursory test here shows that adding
> this to the stock config does cause the dns-oarc reply size test to
> report a reply
Hi all,
I've just tested the PowerDNS Recursor 3.2 with its out of the box
configuration against the tests outlined at
https://www.dns-oarc.net/oarc/services/replysizetest
It seems that EDNS is disabled by default, which is confirmed by the
comment attached to changeset #1430
(http://wiki.powerdn