Hello everybody,
staring about a month ago I am suffering issues with CNAMES when resolved via 1.1.1.1 DNS server. This is two-fold:
- sometimes TTL of 0 is returned for CNAME
- different TTL is returned for CNAME when requesting A or AAAA record
In combination sometimes TTL of zero and non-zero is returned when A and AAAA records are requested simultaneously in one record set.
Please see RFC 2181, Section 5.2. TTLs of RRs in an RRSet 1, which disallows this:
Consequently the use of differing TTLs in an RRSet is hereby deprecated, the TTLs of all RRs in an RRSet must be the same.
This rule has been implemented in systemd
's resolved
about six years ago:
As a consequence it is no longer possible to use Cloudflare DNS with most Linux distributions. Lots of sites and services are randomly unreachable.
I am not sure this community site is read by admins who are responsible. But I could not find a better place to report this… Hope anybody can fix this.
BTW, I am Arch Linux developer and packaging systemd downstream. Currently we set Cloudflare DNS as first default fallback. That will change if nothing happens any time soon.
Best regards,
Chris
created
18dlast reply
- 3
replies
- 459
views
- 2
users
- 1
like
- 2
links