resolv.conf format for DNSSEC [was: DNSSEC support in stub-resolver]

Siddhesh Poyarekar siddhesh@redhat.com
Fri Jun 20 20:38:00 GMT 2014


On Fri, Jun 20, 2014 at 04:48:15PM +0200, Nikos Mavrogiannopoulos wrote:
> Yes, but these options if overwritten do not cause resolving to fail. If
> the DNSSEC settings are lost it means that every application that
> depends on that will fail. That's a significant difference. 

Isn't that the feature?

> It may have been that resolv.conf's semantics are known to too many
> people to change now.

Agreed, but that does not preclude addition of an option in a manner
that does not break backward compatibility.  In fact, adding another
configuration file just for DNSSEC is just messy.

Siddhesh
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 473 bytes
Desc: not available
URL: <http://sourceware.org/pipermail/libc-alpha/attachments/20140620/d42aa2a2/attachment.sig>


More information about the Libc-alpha mailing list