[Pdns-users] Authoritative PDNS gives back non-authoritative Answers for records

rob777 rogbru at gmail.com
Sun Nov 3 07:41:02 UTC 2024


Hi Jan

I understand. What can be confusing while researching this is that there
seems to be different behaviors depending on which Tech you use (Powerdns,
Bind, Windows AD DNS..)

In my case (which basically is Scenario 1 of the Powerdns Docu
https://doc.powerdns.com/authoritative/guides/recursion.html) - hence i've
choosed this design without dnsdist in front - could one not argue that
technically it is not a recursion but a Forwarding/Conditional Forwarding
in this scenario with the forward-zone configuration?

To throw in a third tech besides Bind and Powerdns: The Windows AD DNS
Forwarder keeps the AA Flag when it is getting the internal zones in a
constellation where it is using Bind Resolver (my old infrastructure). If
the Windows DNS would follow the approach you are mentioning it should not
give back the AA Flag.

Regards
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.powerdns.com/pipermail/pdns-users/attachments/20241103/d35c216e/attachment.htm>


More information about the Pdns-users mailing list