Maintained by: NLnet Labs

[Unbound-users] dig +trace does not work with unbound

Hauke Lampe
Fri Nov 5 17:10:43 CET 2010


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


On 05.11.2010 14:17, Zbynek Michl wrote:

> It is because +trace disables RD flag, so first query and reply is:

> When I use BIND instead of unbound, it replies ok. It is because BIND
> answers its internal root-hints NS list when RD is not set. Should not
> unbound behaves the same way?

Unbound usually only answers recusive queries. You can allow
non-recursive queries with the "allow_snoop" option:

        access-control: 127.0.0.0/8 allow_snoop


Hauke.



-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAkzULH0ACgkQKIgAG9lfHFNVWACePCkB2jzSVHXuKn+A/tVlE4YT
DF0Ani9xtSeQe9ENsLYpzct00HEdCngO
=lr/h
-----END PGP SIGNATURE-----