-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 On 02/04/15 22:17, Dave Taht wrote:
> Are you giving dnsmasq the --dnssec-debug flag? If so you'll still > get a reply (wo an "ad" flag) when the validation fails. That > (combined with the second reply coming from cache) would fit the > data provided. If you remove the dnssec-debug flag, you should get > consistent SERVFAIL replies. > >> No dnssec-debug. Then I'm mystified. It's not behaving in the same way here. Cheers, Simon. -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.22 (GNU/Linux) iEYEARECAAYFAlUdvXcACgkQKPyGmiibgrfBjwCdGwnRMLe8VkeZrbKFX1ODJXaG klQAoIlPPf9qkwSjpJnVVhQyixvSQCUi =rK/E -----END PGP SIGNATURE----- _______________________________________________ Dnsmasq-discuss mailing list [email protected] http://lists.thekelleys.org.uk/mailman/listinfo/dnsmasq-discuss
