Maintained by: NLnet Labs

[Unbound-users] bug ? atleast a difference in behaviour

Leen Besselink
Sun Sep 6 17:57:09 CEST 2009


Paul Wouters wrote:
> On Sun, 6 Sep 2009, Leen Besselink wrote:
> 
>> And I noticed a Unbound has different behaviour then I'm used to.
> 
>> $ dig +norec @c0.org.afilias-nst.info. nmap.org ns | grep IN
>> ;nmap.org.                      IN      NS
>> nmap.org.               86400   IN      NS      ns2.titan.net.
>> nmap.org.               86400   IN      NS      ns1.titan.net.
> 
>> $ dig +short +norec @l.gtld-servers.net. ns2.titan.net.
>> 64.13.134.59
>>
>> Hope this was helpful.
> 
> Are you sure you dont just have different settings for harden-glue
> or harden-referral-path? See if you can see the same difference
> when resolving an NS record for www.rbc.com (a site known to be
> reachable through trusting glue)
> 
> Paul
> 

Changing those settings doesn't matter a thing. You can try those
domains on your recursive DNS, if you like. :-)

It was on the default settings.

DNSSEC-verification is off if you wondering about that also.