Maintained by: NLnet Labs

prevent unbound from attempting to contact root servers?

W.C.A. Wijngaards
Mon Nov 21 11:52:46 CET 2016


Hi James

On 16/11/16 23:10, James Ralston via Unbound-users wrote:
> On Wed, Nov 16, 2016 at 3:57 PM, Eduardo Schoedler <listas at esds.com.br> wrote:
>> https://tools.ietf.org/html/rfc7706#appendix-B.2
> 
> Thanks, but the examples in RFC7706 are addressing setting up a
> completely self-contained nameserver that performs its own recursive
> resolution.  I have the exact opposite situation: I want unbound to
> use nothing *except* our existing recursive resolvers.
> 
> (I tested the configuration in Appendix B.2, and unbound still
> attempts to send queries directly to the root nameservers.)

This is a bug that was fixed a long time ago.  Update your version of
unbound to stop this behaviour.  If you already have the latest version,
some sort of bug is hitting you but not other users?

Best regards, Wouter

> 
> Any other ideas?
> 


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <https://unbound.nlnetlabs.nl/pipermail/unbound-users/attachments/20161121/f2e34674/attachment.sig>