[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: [tor-relays] Let's increase the amount of exit relays doing DNSSEC validation



Great initiative!
Personally I would also see some sort of "DANE" for Tor-relays in the
future too, but that is a request for another thread.

/ Jonathan
> On 12.04.18 13:05, Alexander Dietrich wrote:
>
>> Just to be safe, you could also check the rest of the dig output and
>> /etc/resolv.conf (or relevant resolver configuration on your system)
>> to make sure your BIND is being used.
> I have seen hosters where /etc/resolv.conf is overwritten whenever the
> system reboots, and in these cases I used the following:
>
>   # Add this to /etc/tor/torrc
>   ServerDNSResolvConfFile /etc/tor/resolv.conf
>
>   # /etc/tor/resolv.conf
>   nameserver 127.0.0.1
>   # IPv6 alternative
>   #nameserver ::1
>
> -Ralph
>
> _______________________________________________
> tor-relays mailing list
> tor-relays@xxxxxxxxxxxxxxxxxxxx
> https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays


Attachment: smime.p7s
Description: S/MIME-kryptografisk signatur

_______________________________________________
tor-relays mailing list
tor-relays@xxxxxxxxxxxxxxxxxxxx
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays