Skip to content

rules-qname-forward

Purpose

Confirm that a request rule whose qname suffix selector matches can still forward to the peer and return a successful A answer. Matching rules that set the pool must not break the forward contract for allowed names.

How it works

  1. The peer answers allow.rules-lab.test → 192.0.2.20.
  2. Conduit runs with a qname-suffix rule on .rules-lab.test. that sets the default pool (before the catch-all).
  3. A client queries Conduit for that name.
  4. Checks require NOERROR and at least one answer RR.

Outcomes

Outcome Meaning for operators
pass The selector-matched request rule still produced a successful forward A answer.
fail Unexpected: rule matching broke or blocked a name that should forward.
skip This peer/profile combination is out of scope.
characterized Not used for this case today. If it appeared, it would mean a documented peer-specific quirk rather than a Conduit regression.

Matrix: peer (by publisher)

Suites: full

Oracles: property