Hello.
On 16/11/2021 13.48, tomas tomas wrote:
I have a problem with knot-resolver and resolving
CNAME on my domain,
but request to bind-resolver is ok.
It looks like you don't understand what policy.STUB does. The target IP
address is assumed to be full *resolver*. It returned just the CNAME
with RCODE=NOERROR, i.e. implying that the CNAME's target exists but has
no data of the requested type (A in this case).
Unfortunately, kresd currently does not have a suitable "redirection"
configuration for the case where the target IP address is meant as
*authoritative* server for some sub-tree. STUB often kind-of works as a
hack for such cases, but as you see it's certainly not perfect.
--Vladimir