userdoc:tt_dns_tls_proxy

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision Both sides next revision
userdoc:tt_dns_tls_proxy [2018/05/05 18:56]
abelbeck [DNS-TLS Proxy Configuration]
userdoc:tt_dns_tls_proxy [2018/05/05 19:06]
abelbeck [DNS-TLS Proxy Configuration]
Line 24: Line 24:
 {{:userdoc:dns_tls-default-config1.jpg?nolink|DNS-TLS Default Configuration}} {{:userdoc:dns_tls-default-config1.jpg?nolink|DNS-TLS Default Configuration}}
  
-{{:userdoc:dns_tls-default-config1a.jpg?nolink|DNS-TLS Default Configuration}}+The "DNSSEC Validation" selection defines the stubby ''dnssec_return_status'' configuration. By default, any DNSSEC validation is expected to be performed by the upstream server. Offloading the DNSSEC validation upstream via a secure channel results in the fastest method. 
 + 
 +{{:userdoc:dns_tls-default-config1a.jpg?nolink|DNS-TLS DNSSEC Configuration}}
  
 The "Query Server(s)" selection defines the stubby ''round_robin_upstreams'' configuration. By default, only the first upstream recursive server entry is used to handle all DNS queries. If that server becomes unavailable then the next server in the list will be used to handle all DNS queries. The "Query Server(s)" selection defines the stubby ''round_robin_upstreams'' configuration. By default, only the first upstream recursive server entry is used to handle all DNS queries. If that server becomes unavailable then the next server in the list will be used to handle all DNS queries.
Line 30: Line 32:
 !!Tip ->!! The default "one until unavailable, then next" generally yields the best performance. !!Tip ->!! The default "one until unavailable, then next" generally yields the best performance.
  
-{{:userdoc:dns_tls-default-config1b.jpg?nolink|DNS-TLS Default Configuration}}+{{:userdoc:dns_tls-default-config1b.jpg?nolink|DNS-TLS Query Configuration}}
  
 If you want to enable the stubby ''round_robin_upstreams'' configuration, select the "across all available server(s)" option.  In this case all DNS queries will be sequentially distributed across all the upstream recursive server entries. If you want to enable the stubby ''round_robin_upstreams'' configuration, select the "across all available server(s)" option.  In this case all DNS queries will be sequentially distributed across all the upstream recursive server entries.
  • userdoc/tt_dns_tls_proxy.txt
  • Last modified: 2023/02/17 19:38
  • by abelbeck