1
0
Fork 0
knot-resolver/doc/config-dnssec.rst
Daniel Baumann fbc604e215
Adding upstream version 5.7.5.
Signed-off-by: Daniel Baumann <daniel.baumann@progress-linux.org>
2025-06-21 13:56:17 +02:00

17 lines
541 B
ReStructuredText

.. SPDX-License-Identifier: GPL-3.0-or-later
.. _dnssec-config:
*************************
DNSSEC, data verification
*************************
Good news! Knot Resolver uses secure configuration by default, and this configuration
should not be changed unless absolutely necessary, so feel free to skip over this section.
.. include:: ../daemon/lua/trust_anchors.rst
DNSSEC is main technology to protect data, but it is also possible to change how strictly
resolver checks data from insecure DNS zones:
.. include:: ../lib/layer/mode.rst