This causes trouble when you try to resolve a record like
a.b.blah.com where b.blah.com responds with NXDOMAIN. unbound
won't try to resolve a.b.blah.com because it is assumed that
everything longer than b.blah.com does not exist which is
probably not good usability.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
# Privacy Options
hide-identity: yes
hide-version: yes
# Privacy Options
hide-identity: yes
hide-version: yes
- qname-minimisation: yes
minimal-responses: yes
# DNSSEC
minimal-responses: yes
# DNSSEC
harden-short-bufsize: no
harden-large-queries: yes
harden-dnssec-stripped: yes
harden-short-bufsize: no
harden-large-queries: yes
harden-dnssec-stripped: yes
- harden-below-nxdomain: yes
harden-referral-path: yes
harden-algo-downgrade: no
use-caps-for-id: no
harden-referral-path: yes
harden-algo-downgrade: no
use-caps-for-id: no