Maintained by: NLnet Labs

[Unbound-users] validator module

Slingerland, Michael van
Mon Feb 21 21:38:50 CET 2011

Hi chris,

You are correct.
Enabling validator module effectively enables DNSSEC.
If you only cache internal network dns entries, there is not much added value enabling validator as far as I can see.

-----Original Message-----
From: unbound-users-bounces at [mailto:unbound-users-bounces at] On Behalf Of Chris Smith
Sent: Monday, 21 February 2011 17:44
To: unbound-users at
Subject: [Unbound-users] validator module

Is the validator module only for DNSSEC validation?

If so, is there any benefit (less overhead) to running Unbound with only the iterator module:
module-config: "iterator"
when you're basically operating as a local cache for the network working with stub-zones and forwarders that are not using DNSSEC?

Thank you,

Unbound-users mailing list
Unbound-users at

N.B.: op (de inhoud van) deze e-mail is een DISCLAIMER met belangrijke VOORBEHOUDEN van toepassing: zie 
This e-mail and its contents are subject to a DISCLAIMER with important RESERVATIONS: see