Re: [exim-dev] [Bug 2911] New: setting dns_again_means_nonex…

Startseite
Nachricht löschen
Nachricht beantworten
Autor: Jeremy Harris
Datum:  
To: exim-dev
Alte Treads: Re: [exim-dev] [Bug 2911] New: setting dns_again_means_nonexist to a list containing @mx_ lookups causes segfault
Betreff: Re: [exim-dev] [Bug 2911] New: setting dns_again_means_nonexist to a list containing @mx_ lookups causes segfault
On 23/08/2022 20:12, Viktor Dukhovni via Exim-dev wrote:
> Note that if this also potentially applies to TLSA lookups, then
> downgrading SRVFAIL (try again) to NXDOMAIN breaks the downgrade
> resistance of DANE.


Yup, it would be too easy to write a configuration that did that.
I'll add code to ignore that option for TLSA lookups.
--
Thanks,
Jeremy