On 29/10/2020 18:19, Bernard Rosset via Dng wrote: >> That said, I've stopped using unbound and I'm using straight BIND as my
>> local resolver lately. It's pleasant.
>
> From what we discovered about unbound during one of the meetings, I clearly do not trust that technology. Too bad: it was on my to-test list.
>
> However, unbound is recursive-only IIRC.
>
> Since I am most interested in authoritative NS technology, I have yet to test knot, of which I read good stuff.
>
> BIND is ol' do-it-all grand-daddy. A bit messy & overcomplicated to properly set up & manage to my taste. Used it for ages, I like what I am used to, and after battling with Micro$oft's offering.... but it is not appropriate for my current project.
Can anybody suggest a suitable authoritative/recursive DNSSEC supporting name server for SOHO domain use on embedded systems.
What I am looking for is something like dnsmasq.