DNSSEC enabled in default unbound(8) configuration
by from OpenBSD Journal on (#44TEA)
With thiscommit,Florian Obser (florian@) enabled DNSSEC validation in the defaultunbound.conf(5)in -current:
CVSROOT:/cvsModule name:srcChanges by:florian@cvs.openbsd.org2018/12/07 02:21:08Modified files:etc : unbound.conf Log message:Enable DNSSEC validation.Requested by & OK claudioInput & OK sthenOK job, soleneVarious commenting that they run with validation since a long timewithout issues.
There's also a relatedentryin the"Following -current and using snapshots" FAQ.
Update: The change has been reverted:
CVSROOT:/cvsModule name:srcChanges by:florian@cvs.openbsd.org2018/12/11 12:16:36Modified files:etc : unbound.conf Log message:the world is not ready for dnssec enabled by default