Skip to content
Projects
Groups
Snippets
Help
Loading...
Help
Support
Keyboard shortcuts
?
Submit feedback
Sign in / Register
Toggle navigation
C
Coredns
Project overview
Project overview
Details
Activity
Releases
Repository
Repository
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Locked Files
Issues
0
Issues
0
List
Boards
Labels
Service Desk
Milestones
Merge Requests
0
Merge Requests
0
CI / CD
CI / CD
Pipelines
Jobs
Schedules
Security & Compliance
Security & Compliance
Dependency List
License Compliance
Packages
Packages
List
Container Registry
Analytics
Analytics
CI / CD
Code Review
Insights
Issues
Repository
Value Stream
Wiki
Wiki
Snippets
Snippets
Members
Members
Collapse sidebar
Close sidebar
Activity
Graph
Create a new issue
Jobs
Commits
Issue Boards
Open sidebar
Railgun
Coredns
Commits
97334959
Commit
97334959
authored
Nov 20, 2018
by
Miek Gieben
Committed by
corbot[bot]
Nov 20, 2018
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
plugin/forward: make tls config more clear (#2326)
Automatically submitted.
parent
a1d92c51
Changes
1
Hide whitespace changes
Inline
Side-by-side
Showing
1 changed file
with
15 additions
and
1 deletion
+15
-1
plugin/forward/README.md
plugin/forward/README.md
+15
-1
No files found.
plugin/forward/README.md
View file @
97334959
...
...
@@ -79,7 +79,9 @@ forward FROM TO... {
The server certificate is verified using the specified CA file
*
`tls_servername`
**NAME**
allows you to set a server name in the TLS configuration; for instance 9.9.9.9
needs this to be set to
`dns.quad9.net`
.
needs this to be set to
`dns.quad9.net`
. Multiple upstreams are still allowed in this scenario,
but they have to use the same
`tls_servername`
. E.g. mixing 9.9.9.9 (QuadDNS) with 1.1.1.1
(Cloudflare) will not work.
*
`policy`
specifies the policy to use for selecting upstream servers. The default is
`random`
.
*
`health_check`
, use a different
**DURATION**
for health checking, the default duration is 0.5s.
...
...
@@ -160,6 +162,18 @@ service with health checks.
}
~~~
Or with multiple upstreams from the same provider
~~~
corefile
. {
forward . tls://1.1.1.1 tls://1.0.0.1 {
tls_servername loudflare-dns.com
health_check 5s
}
cache 30
}
~~~
## Bugs
The TLS config is global for the whole forwarding proxy if you need a different
`tls_servername`
for
...
...
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment