From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail2.tohojo.dk (mail2.tohojo.dk [IPv6:2a01:4f8:200:3141::101]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by huchra.bufferbloat.net (Postfix) with ESMTPS id 3DA1E21F298 for ; Sat, 12 Apr 2014 04:12:10 -0700 (PDT) X-Virus-Scanned: amavisd-new at example.com Received: by alrua-x1.borgediget.toke.dk (Postfix, from userid 1000) id 810631E6B2; Sat, 12 Apr 2014 13:11:56 +0200 (CEST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=toke.dk; s=201310; t=1397301117; bh=VNpeICueSNdt24tEQKb9ZVT3/js8Wv3B/9q5EtqBwfs=; h=From:To:Cc:Subject:References:Date:In-Reply-To; b=pnzvJaF0Sfua34CUTna7V+YNBqKWw6tvBL0xas2s1ltz9QXO1W+6AmvX9tBtGo061 YConFEHu2zzAU002kk8KUW2L3CAIVuZc0liCH3mHzzpcucNQIQkLZYXTlPGKXB+ESF z6zvkpB3QxSVQYZx5RUJrdeUNJSpnM/Unf9AjLoc= From: =?utf-8?Q?Toke_H=C3=B8iland-J=C3=B8rgensen?= To: Robert Bradley References: <53491E4F.4040108@gmail.com> Date: Sat, 12 Apr 2014 13:11:56 +0200 In-Reply-To: <53491E4F.4040108@gmail.com> (Robert Bradley's message of "Sat, 12 Apr 2014 12:06:55 +0100") Message-ID: <878urakdj7.fsf@alrua-x1.kau.toke.dk> Content-Type: text/plain Cc: cerowrt-devel Subject: Re: [Cerowrt-devel] DNSSEC failure for *.cloudflare.com via dnsmasq? X-BeenThere: cerowrt-devel@lists.bufferbloat.net X-Mailman-Version: 2.1.13 Precedence: list List-Id: Development issues regarding the cerowrt test router project List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 12 Apr 2014 11:12:10 -0000 Robert Bradley writes: > Can anyone explain why this should be the case? If you turn on log-queries in the dnsmasq config, you can see the results of the dnssec validation in the logs which might give a hint :) -Toke