You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@trafficserver.apache.org by "Miles Libbey (JIRA)" <ji...@apache.org> on 2013/12/19 02:11:07 UTC

[jira] [Work started] (TS-428) New DNS configuration option

     [ https://issues.apache.org/jira/browse/TS-428?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Work on TS-428 started by Miles Libbey.

> New DNS configuration option
> ----------------------------
>
>                 Key: TS-428
>                 URL: https://issues.apache.org/jira/browse/TS-428
>             Project: Traffic Server
>          Issue Type: New Feature
>          Components: Documentation
>            Reporter: Leif Hedstrom
>            Assignee: Miles Libbey
>             Fix For: Docs
>
>
> There is a new DNS configuration option, from the records.config file:
>    # This provides additional resilience against DNS forgery, particularly in
>    # forward or transparent proxies, but requires that the resolver populates
>    # the queries section of the response properly.
> CONFIG proxy.config.dns.validate_query_name INT 0
> This setting is disabled by default, enabling it will force us to validate the name in response from the resolver to make sure it matches the request we made. This could potentially break if the resolver does not populate the queries section with the requested name.
> Enabling this option is highly recommended, particularly for running ATS in a forward or transparent proxy configuration.



--
This message was sent by Atlassian JIRA
(v6.1.4#6159)