Loading...
Loading...
Under some circumstances, the recursion available (RA) bit may be unset in responses from DNS cache.
The impact of this issue is that recursion available is not signaled to clients so they may not treat the DNS cache as an available resolver.
If the system caches a message from the authoritative server without the rd bit, and subsequent queries with rd set find that message, the first message will not be used because the rd bit is not set. In this case, the operation falls back to the rrset cache and composes a message, but leaves the RA bit unset. This is appropriate for the transparent cache, but not the non-transparent cache.
To work around this issue, write an iRule to set the RA bit when the cache is a resolver. Must also check origin for CACHE.
The RA bit is set for the response when the cache resolver answers the query from the fast path.
Click on a version to see all relevant bugs
F5 Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.