simple named.conf with dnssec ?
Hello.
Has anyone a working simple and secure named.conf for a home server that has dnssec enabled ? I just added dnssec to my (pretty ancient) named.conf, but honestly I'm not sure whether my config is still up-to-date when it comes to security. I'm using the latest openbsd.
I have a very simple configuration at home. The name server only runs on a dialup wifi-router and manages a "localnet" as you can see below:
192.168.1.x -- "localnet" <-> bind on router -> forwarders
How can I verify that my bind talks to the other name server via dnssec?
|