Thank you for the suggestion and whilst not the solution it provided the pointer to sort this...

Basically call it my stupidity or ignorance of having copy/pasted in the server directive various zone statements and that including [ domain-insecure: mail ]. After removing it the error gone.

Same old - human error being the most common bug...


On 26/07/2018 23:37, Eric Luehrsen wrote:
Try this instead.

    local-zone: [mail.example.net] typetransparent
    local-data: "[mail.example.net] 3600 IN DS [parms hash blob]"

Then the DS is pulled from Unbound internally and not subject to root-reconcilation, rfc5011, and such.

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to