[Cerowrt-devel] [Dnsmasq-discuss] Problems with DNSsec on Comcast, with Cero 3.10.38-1/DNSmasq 4-26-2014
dave.taht at gmail.com
Thu May 1 18:27:20 EDT 2014
On Thu, May 1, 2014 at 1:26 PM, Rich Brown <richb.hanover at gmail.com> wrote:
> On May 1, 2014, at 2:37 PM, Simon Kelley <simon at thekelleys.org.uk> wrote:
>> On 30/04/14 18:26, Dave Taht wrote:
>>> On Tue, Apr 29, 2014 at 1:57 PM, Phil Pennock
>>> <cerowrt-devel+phil at spodhuis.org> wrote:
> snip, snip snip...
>>> Is the consensus to not run with negative proofs on at this juncture?
>> If you want stuff to just work, turn off negative proofs, if you want to
>> push the envelope, leave them on and complain to domain-admins.
>> I had some feeling that something like this might be a problem, hence
>> the discrete controls.
> I apologize that I haven't been following this closely, but so I'm going to ask a TL;DR question.
> Which places in the OpenWrt/CeroWrt GUI (or the config files) do I use to wiggle these levers?
There is no gui support as yet. enablement is via /etc/dnsmasq.conf
I disabled (commented out) the negative proof checks in the 3.10.38-2 release.
More information about the Cerowrt-devel