Reindl Harald skrev den 2015-09-16 15:35:
"cache-min-ttl" is AFAIK a unbound-only feature because it violates
RFC's but in case of a mailserver it's your decision and if you don#t
set it for days normally not a problem
so configure unbound to listing only on 127.0.0.2 and in named.conf use
forward only to that ip, make sure bind does not bind to 127.0.0.2
then one can have ttl ignored for spamassassin dns but rfc ok for others
or just set dns_servers in local.cf for 127.0.0.2
even it for did all that right both bind and unbound will work together
wehn dns servers enforce small ttl and not tell there orher servers with
a soa notify thay make there own problems