Skip to content

GitLab

  • Projects
  • Groups
  • Snippets
  • Help
    • Loading...
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
    • Contribute to GitLab
  • Sign in / Register
reForis
reForis
  • Project overview
    • Project overview
    • Details
    • Activity
    • Releases
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
  • Issues 49
    • Issues 49
    • List
    • Boards
    • Labels
    • Service Desk
    • Milestones
  • Merge Requests 3
    • Merge Requests 3
  • CI / CD
    • CI / CD
    • Pipelines
    • Jobs
    • Schedules
  • Operations
    • Operations
    • Incidents
    • Environments
  • Analytics
    • Analytics
    • CI / CD
    • Repository
    • Value Stream
  • Snippets
    • Snippets
  • Members
    • Members
  • Collapse sidebar
  • Activity
  • Graph
  • Create a new issue
  • Jobs
  • Commits
  • Issue Boards
  • Turris
  • reForis
  • reForisreForis
  • Issues
  • #267

Closed
Open
Opened Nov 26, 2020 by Karel Koci@kkoci🤘Owner

Small improvements on DNS setting page with DNSSEC

We should probably not allow users to enable/disable DNSSEC for every single setting.

In case of unused forwarding there is not reason to not use DNSSEC.

In case of pre-defined forwarders (such as CZ.NIC or Cloudflare) it is know if they support DNSSEC or not (and they do) so user should not be able to disable/enable DNSSEC to not insecure/break DNS.

There are only two cases where it makes sense to disable DNSSEC and that is:

  • Provider's resolver
  • Custom resolver
Edited Nov 26, 2020 by Karel Koci
To upload designs, you'll need to enable LFS and have admin enable hashed storage. More information
Assignee
Assign to
Turris OS 5.3.0
Milestone
Turris OS 5.3.0
Assign milestone
Time tracking
None
Due date
None
Reference: turris/reforis/reforis#267