From eb6766e07ec2517ad0ff62e18527668c25dd116b Mon Sep 17 00:00:00 2001 From: Mohit Mehta Date: Wed, 14 Apr 2010 16:09:12 -0700 Subject: For Bug 5625 Not ready for DNSSEC implementation * Increase EDNS max packet size to 4096 as recommended in RFC 5625. Note that this is margin for uncommon case and the previous default of 1280 should be fine in most cases as mentioned on IETF's mailing list --- scripts/dns-forwarding/vyatta-dns-forwarding.pl | 1 + 1 file changed, 1 insertion(+) diff --git a/scripts/dns-forwarding/vyatta-dns-forwarding.pl b/scripts/dns-forwarding/vyatta-dns-forwarding.pl index 0caf8371..4334eaaa 100644 --- a/scripts/dns-forwarding/vyatta-dns-forwarding.pl +++ b/scripts/dns-forwarding/vyatta-dns-forwarding.pl @@ -51,6 +51,7 @@ sub dnsforwarding_get_constants { $output = "#\n# autogenerated by vyatta-dns-forwarding.pl on $date\n#\n"; $output .= "log-facility=/var/log/dnsmasq.log\n"; $output .= "no-poll\n"; + $output .= "edns-packet-max=4096\n"; system("rm -f /var/log/dnsmasq.log; touch /var/log/dnsmasq.log"); return $output; } -- cgit v1.2.3