-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 02/04/15 22:17, Dave Taht wrote:

> Are you giving dnsmasq the --dnssec-debug flag? If so you'll still
> get a reply (wo an "ad" flag) when the validation fails. That
> (combined with the second reply coming from cache) would fit the
> data provided. If you remove the dnssec-debug flag, you should get
> consistent SERVFAIL replies.
> 
>> No dnssec-debug.

Then I'm mystified. It's not behaving in the same way here.


Cheers,

Simon.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (GNU/Linux)

iEYEARECAAYFAlUdvXcACgkQKPyGmiibgrfBjwCdGwnRMLe8VkeZrbKFX1ODJXaG
klQAoIlPPf9qkwSjpJnVVhQyixvSQCUi
=rK/E
-----END PGP SIGNATURE-----

_______________________________________________
Dnsmasq-discuss mailing list
[email protected]
http://lists.thekelleys.org.uk/mailman/listinfo/dnsmasq-discuss

Reply via email to