dnsmasq-cname-ignored-nonlocal
Purpose
With dnsmasq, a configured CNAME whose target is not known locally is ignored. Asking for the alias can return NXDOMAIN even though a neighboring local A name still works. When Conduit sits in front of dnsmasq, clients should see that same NXDOMAIN — Conduit does not invent an expansion dnsmasq itself would not provide.
How it works
- dnsmasq is set up with a CNAME pointing at a non-local name, a control local A, and a local zone so unanswered names under that zone stay local.
- A client queries the alias as type A through Conduit.
- The reply must be NXDOMAIN and match a direct query to dnsmasq.
Outcomes
| Outcome | Meaning for operators |
|---|---|
| pass | Not expected for this case; a matching result is reported as characterized. |
| fail | Through Conduit the alias was unexpectedly answered, or the reply disagreed with querying dnsmasq directly. |
| skip | Peer is not the dnsmasq stub under test (or profile out of scope). |
| characterized | Expected: NXDOMAIN for the ignored nonlocal CNAME through Conduit, matching dnsmasq. |
Matrix: peer (by publisher)
Suites: full
Oracles: property, parity, differential