Hello Bert,

Here's a link to the trace https://code.compassfoundation.io/snippets/9

I did wonder too if there's an issue of reaching root servers, or firewall 
modifying responses, so I did try installing unbound on the same machine, and 
it's working fine. unbound on port 3053 always works, but pdns on port 2053 
always FAIL.

Regards,

Dave

On 5/25/20 4:04 PM, bert hubert wrote:
On Mon, May 25, 2020 at 03:57:22PM -0400, Dave Burkholder via Pdns-users wrote:
When I enable trace, I get lines like:

May 25 15:36:44 system.cdc.lan pdns_recursor[16801]: [2]  bing.com: Got 3 
answers from b.root-servers.net (199.9.14.201), rcode=0 (No Error), aa=0, in 6ms
May 25 15:36:44 system.cdc.lan pdns_recursor[16801]: [2]  Removing record 
'bing.com|A|204.79.197.200' in the answer section without the AA bit set 
received from .
May 25 15:36:44 system.cdc.lan pdns_recursor[16801]: [2]  Removing record 
'bing.com|A|13.107.21.200' in the answer section without the AA bit set 
received from .
Could you please send a complete output of trace? It appears someone is
intercepting and changing your DNS responses.

Thanks!

        Bert

_______________________________________________
Pdns-users mailing list
Pdns-users@mailman.powerdns.com
https://mailman.powerdns.com/mailman/listinfo/pdns-users

Reply via email to