nsd icon indicating copy to clipboard operation
nsd copied to clipboard

Don't log ACL mismatches of CNAME targets

Open wtoorop opened this issue 5 days ago • 0 comments

This came from an e-mail to the nsd-users list.

If a CNAME is followed and it reaches a domain which as an allow-query list and the querier is blocked (because no ACL matches or by other reasons), do not log an message about the ACL not matching.

Is it desirable if no message is logged in such cases? Or is there still value in logging if CNAME targets do not match an ACL for a queries?

wtoorop avatar Jul 03 '24 08:07 wtoorop