Is there any particular reason you are using DLV and not ordinary root DNSSEC?
On 24/08/2014, at 9:00 am, Jean-Francois Pirus
Unless I'm missing something, looks like my internal dns stopped working because there were issues with the link to the US.
All because dnssec is enabled in bind.
Namely queries from a resolver server would timeout looking up MYHOST.MYDOMAIN.com.dlv.isc.org before it got to querying my authoritative server.
It's been a while but I thought it was myhost.mydomain.dlv.isc.org (i.e. no .com)
Is there any way to work around that?
Don't use DLV? Jay
Seems like a single point of failure, where resolvers will fail if there are any issues with com.dlv.isc.org.
Thanks.
-- Jean-Francois Pirus | Technical Manager francois(a)clearfield.com | Mob +64 21 640 779 | DDI +64 9 282 3401
Clearfield Software Ltd | Ph +64 9 358 2081 | www.clearfield.com _______________________________________________ NZNOG mailing list NZNOG(a)list.waikato.ac.nz http://list.waikato.ac.nz/mailman/listinfo/nznog
-- Jay Daley Chief Executive .nz Registry Services (New Zealand Domain Name Registry Limited) desk: +64 4 931 6977 mobile: +64 21 678840 linkedin: www.linkedin.com/in/jaydaley