Bug 11569

Summary: disabling DNSSEC by default!
Product: [ROSA-based products] ROSA Fresh Reporter: Vladimir Potapov <v.potapov>
Component: System (kernel, glibc, systemd, bash, PAM...)Assignee: ROSA Linux Bugs <bugs>
Status: RESOLVED DUPLICATE    
Severity: normal CC: m.novosyolov
Priority: Normal    
Version: All   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Platform: --- ROSA Vulnerability identifier:
RPM Package: Upstream:
Bug Depends on:    
Bug Blocks: 11462    

Description Vladimir Potapov 2021-10-21 11:38:18 MSK
До сих пор пробегают глюки с DNSSEC,  в браузере то одна, то другая страница не находятся... а потом опять находятся.

Вот что пишет Поттеринг
https://fedoraproject.org/wiki/Changes/systemd-resolved#DNSSEC


systemd-resolved's DNSSEC support is known to cause compatibility problems with certain network access points (Reference #1, Reference #2). Per recommendation from the systemd developers, we will change the default value of this setting in Fedora from the upstream default DNSSEC=allow-downgrade to DNSSEC=no by building systemd with the build option -Ddefault-dnssec=no
Comment 1 Mikhail Novosyolov 2021-11-04 00:53:05 MSK

*** This bug has been marked as a duplicate of bug 11597 ***