SERVFAIL/REFUSED from every auth server means the record could not be observed, not that the zone published a negative answer. Mark such rcodes transient on TermRcode terminations and final A/AAAA lookups so chainRcodeRule reports Unknown instead of flapping the check into Crit/Warn; definitive NXDOMAIN answers still drive Crit (mid-chain) and Warn (final). |
||
|---|---|---|
| .. | ||
| collect.go | ||
| definition.go | ||
| dns.go | ||
| dns_test.go | ||
| interactive.go | ||
| provider.go | ||
| report.go | ||
| rules_apex.go | ||
| rules_chain.go | ||
| rules_coexistence.go | ||
| rules_common.go | ||
| rules_dnssec.go | ||
| rules_test.go | ||
| types.go | ||