Paul Wouters wrote: > On Sun, 6 Sep 2009, Leen Besselink wrote: > >> And I noticed a Unbound has different behaviour then I'm used to. > >> $ dig +norec @c0.org.afilias-nst.info. nmap.org ns | grep IN >> ;nmap.org. IN NS >> nmap.org. 86400 IN NS ns2.titan.net. >> nmap.org. 86400 IN NS ns1.titan.net. > >> $ dig +short +norec @l.gtld-servers.net. ns2.titan.net. >> 18.104.22.168 >> >> Hope this was helpful. > > Are you sure you dont just have different settings for harden-glue > or harden-referral-path? See if you can see the same difference > when resolving an NS record for www.rbc.com (a site known to be > reachable through trusting glue) > > Paul > Changing those settings doesn't matter a thing. You can try those domains on your recursive DNS, if you like. :-) It was on the default settings. DNSSEC-verification is off if you wondering about that also.