summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorkhramshinr <khramshinr@gmail.com>2024-01-30 21:02:23 +0700
committerMergify <37929162+mergify[bot]@users.noreply.github.com>2024-02-01 19:26:55 +0000
commit6f9d52dcb3e32248f724bbac6e14c047011705ec (patch)
tree4577ad23a12af3ce36d8a6c2e46d0c73256eb899
parent5d8be0756eccd59e09de3b481a64a1d2ddb71cdd (diff)
downloadvyos-documentation-6f9d52dcb3e32248f724bbac6e14c047011705ec.tar.gz
vyos-documentation-6f9d52dcb3e32248f724bbac6e14c047011705ec.zip
dns forwarding: T5687: Implement ECS settings for PowerDNS recursor
(cherry picked from commit ce0b62678f791a18dcc58defc209fbe71b868fca)
-rw-r--r--docs/configuration/service/dns.rst14
1 files changed, 14 insertions, 0 deletions
diff --git a/docs/configuration/service/dns.rst b/docs/configuration/service/dns.rst
index 7624d309..e430dc73 100644
--- a/docs/configuration/service/dns.rst
+++ b/docs/configuration/service/dns.rst
@@ -156,6 +156,20 @@ avoid being tracked by the provider of your upstream DNS server.
recursor does not like, it is throttled. Any servers matching the supplied
netmasks will never be throttled.
+.. cfgcmd:: set service dns forwarding options ecs-add-for <address>
+
+ The requestor netmask for which the requestor IP Address should be used as the
+ EDNS Client Subnet for outgoing queries.
+
+.. cfgcmd:: set service dns forwarding options ecs-ipv4-bits <number>
+
+ Number of bits of client IPv4 address to pass when sending EDNS Client Subnet
+ address information.
+
+.. cfgcmd:: set service dns forwarding options edns-subnet-allow-list <address|domain>
+
+ The netmask or domain that EDNS Client Subnet should be enabled for in outgoing queries.
+
Example
=======