- Fix #767: Reference to an expired Internet-Draft in

harden-below-nxdomain documentation.


git-svn-id: file:///svn/unbound/trunk@3724 be551aaa-1e26-0410-a405-d3ace91eadb9
This commit is contained in:
Wouter Wijngaards 2016-05-23 12:51:55 +00:00
parent 2e43f7ac2b
commit e583c42b81
2 changed files with 5 additions and 0 deletions

View file

@ -1,3 +1,7 @@
23 May 2016: Ralph
- Fix #767: Reference to an expired Internet-Draft in
harden-below-nxdomain documentation.
20 May 2016: Ralph 20 May 2016: Ralph
- No QNAME minimisation fall-back for NXDOMAIN answers from DNSSEC - No QNAME minimisation fall-back for NXDOMAIN answers from DNSSEC
signed zones. signed zones.

View file

@ -577,6 +577,7 @@ might return nxdomain for empty nonterminals (that usually happen for reverse
IP address lookups), and thus may be incompatible with this. To try to avoid IP address lookups), and thus may be incompatible with this. To try to avoid
this only DNSSEC-secure nxdomains are used, because the old software does not this only DNSSEC-secure nxdomains are used, because the old software does not
have DNSSEC. Default is off. have DNSSEC. Default is off.
Currently, draft\-ietf\-dnsop\-nxdomain\-cut promotes this technique.
.TP .TP
.B harden\-referral\-path: \fI<yes or no> .B harden\-referral\-path: \fI<yes or no>
Harden the referral path by performing additional queries for Harden the referral path by performing additional queries for