=================================================================== RCS file: /cvsrepo/anoncvs/cvs/src/etc/unbound.conf,v retrieving revision 1.8 retrieving revision 1.9 diff -c -r1.8 -r1.9 *** src/etc/unbound.conf 2018/03/29 20:40:22 1.8 --- src/etc/unbound.conf 2018/12/07 09:21:08 1.9 *************** *** 1,4 **** ! # $OpenBSD: unbound.conf,v 1.8 2018/03/29 20:40:22 florian Exp $ server: interface: 127.0.0.1 --- 1,4 ---- ! # $OpenBSD: unbound.conf,v 1.9 2018/12/07 09:21:08 florian Exp $ server: interface: 127.0.0.1 *************** *** 24,37 **** # #qname-minimisation: yes ! # Uncomment to enable DNSSEC validation. ! # ! #auto-trust-anchor-file: "/var/unbound/db/root.key" ! # Uncomment to synthesize NXDOMAINs from DNSSEC NSEC chains ! # https://tools.ietf.org/html/rfc8198 ! # ! #aggressive-nsec: yes # Serve zones authoritatively from Unbound to resolver clients. # Not for external service. --- 24,35 ---- # #qname-minimisation: yes ! # Enable DNSSEC validation. ! auto-trust-anchor-file: "/var/unbound/db/root.key" ! val-log-level: 2 ! # Synthesize NXDOMAINs from DNSSEC NSEC chains. RFC 8198 ! aggressive-nsec: yes # Serve zones authoritatively from Unbound to resolver clients. # Not for external service.