Jan Kurik <jkurik@xxxxxxxxxx> wrote: > Install a local DNS resolver trusted for the DNSSEC validation running on > 127.0.0.1:53. This must be the only name server entry in /etc/resolv.conf. > > The automatic name server entries received via dhcp/vpn/wireless > configurations should be stored separately (e.g. this is stored in the > NetworkManager internal state), as transitory name servers to be used by the > trusted local resolver. In all cases, DNSSEC validation will be done > locally. How does this interact with dnsmasq which also wants to be the only name server entry in resolv.conf? David -- devel mailing list devel@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/devel Fedora Code of Conduct: http://fedoraproject.org/code-of-conduct