From: Otto Moerbeek Date: Fri, 7 Feb 2025 13:48:04 +0000 (+0100) Subject: Apply suggestions from code review X-Git-Tag: dnsdist-2.0.0-alpha1~117^2 X-Git-Url: http://git.ipfire.org/?a=commitdiff_plain;h=refs%2Fpull%2F15128%2Fhead;p=thirdparty%2Fpdns.git Apply suggestions from code review Co-authored-by: Remi Gacogne --- diff --git a/pdns/recursordist/settings/docs-new-preamble-in.rst b/pdns/recursordist/settings/docs-new-preamble-in.rst index db3a010698..0220b5de17 100644 --- a/pdns/recursordist/settings/docs-new-preamble-in.rst +++ b/pdns/recursordist/settings/docs-new-preamble-in.rst @@ -181,7 +181,7 @@ An example of a ``forward_zones_file`` contents, which consists of a sequence of .. note:: - The ``recurse`` field is relevant only in a ``Foward Zone`` clause in a forwarding file. + The ``recurse`` field is relevant only in a ``Forward Zone`` clause in a forwarding file. It has a fixed value in the context of :ref:`setting-yaml-recursor.forward_zones` and :ref:`setting-yaml-recursor.forward_zones_recurse`. Starting with version 5.1.0, names can be used if diff --git a/pdns/recursordist/settings/table.py b/pdns/recursordist/settings/table.py index 8a4b912eb7..3c2a5a82ab 100644 --- a/pdns/recursordist/settings/table.py +++ b/pdns/recursordist/settings/table.py @@ -1106,7 +1106,7 @@ To forward to a recursive resolver use :ref:`setting-yaml-recursor.forward_zones .. warning:: When using DNSSEC validation (which is default), forwards to non-delegated (e.g. internal) zones that have a DNSSEC signed parent zone will validate as ``Bogus``. To prevent this, add a Negative Trust Anchor (NTA) for this zone in the :ref:`setting-lua-config-file` with :func:`addNTA`. - If this forwarded zone is signed, instead of adding NTA, add the DS record to the :ref:`setting-lua-config-file` using :fun:adTA`. + If this forwarded zone is signed, instead of adding NTA, add the DS record to the :ref:`setting-lua-config-file` using :func:`addTA`. See the :doc:`dnssec` information. When using trust anchors listed in a YAML settings file, use the :ref:`setting-yaml-dnssec.trustanchors` and :ref:`setting-yaml-dnssec.negative_trustanchors` clauses.