Wireless Access

last person joined: yesterday 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.

DNSSEC Support

This thread has been viewed 2 times
  • 1.  DNSSEC Support

    Posted May 09, 2013 03:13 PM

    Currently runnning 6.1.3.7   and I am testing for DNSsec support.

     

    Notice that the defined svc-dns - appears to be basic udp port 53 rule.... but with just rule - DNSsec fails - appears the controller does not support large UDP frames - or UDP fragments??  if I add a rule to allow TCP 53 - DNSSec can failback to TCP - but should I have to do this?

     

    Notice there is a DNS alg - but I don't know what this does.... 

     

    Anyone else walk down this path before?

     

    Travis

     

     

    -------

    ok update to above.... I had made the assumption that the test I was running was meant to be pure UDP and basically test longer DNS (ie UDP 53 packets, fragments and continuations etc...) going through the controller - this apparently was not the case for the tests being run... and TCP was being used as well....

     

    So at this point DNSSec appears to have no issues through the controllers... still don't know what the alg does