summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorGuo Ruijing <ruijing.guo@intel.com>2017-05-17 08:22:34 +0800
committerGuo Ruijing <ruijing.guo@intel.com>2017-05-18 01:48:08 +0800
commit28953ef030bae8ef9937d0056b46b1ff55ddfc71 (patch)
tree3699c72123b59c74d213e47335dd0ea3f4f90a45
parent5d2b60d25574ecabff97ec9de22d0ae9d8102f70 (diff)
Fix dns lookup failure
Change-Id: I30f45e82ccb4268bd6ba8b93485ddba17650c010 Signed-off-by: Guo Ruijing <ruijing.guo@intel.com>
-rw-r--r--boot/bind_options6
1 files changed, 3 insertions, 3 deletions
diff --git a/boot/bind_options b/boot/bind_options
index 040edb12..49957325 100644
--- a/boot/bind_options
+++ b/boot/bind_options
@@ -4,8 +4,8 @@ acl "trusted" {
options {
directory "/var/cache/bind";
- recursion no; # enables recursive queries
- // allow-recursion { netmask; }; # allows recursive queries from "trusted” clients i.e. LB only
+ recursion yes; # enables recursive queries
+ allow-recursion { any; }; # allows recursive queries from "trusted” clients i.e. LB only
listen-on { dns_ip_addr; }; # ns1 IP address - listen on this address only
allow-transfer { none; }; # disable zone transfers by default
@@ -31,7 +31,7 @@ options {
// If BIND logs error messages about the root key being expired,
// you will need to update your keys. See https://www.isc.org/bind-keys
//========================================================================
- dnssec-validation auto;
+ dnssec-validation no;
auth-nxdomain no; # conform to RFC1035
listen-on-v6 { any; };