comparison xml/en/docs/stream/ngx_stream_core_module.xml @ 2471:c8f0f30e1513

Added a note about DNS spoofing to all "resolver" directives.
author Ruslan Ermilov <ru@nginx.com>
date Mon, 02 Dec 2019 13:39:23 +0300
parents 9cd5883ac546
children 00afc7c4d4df
comparison
equal deleted inserted replaced
2470:504536999408 2471:c8f0f30e1513
7 <!DOCTYPE module SYSTEM "../../../../dtd/module.dtd"> 7 <!DOCTYPE module SYSTEM "../../../../dtd/module.dtd">
8 8
9 <module name="Module ngx_stream_core_module" 9 <module name="Module ngx_stream_core_module"
10 link="/en/docs/stream/ngx_stream_core_module.html" 10 link="/en/docs/stream/ngx_stream_core_module.html"
11 lang="en" 11 lang="en"
12 rev="31"> 12 rev="32">
13 13
14 <section id="summary"> 14 <section id="summary">
15 15
16 <para> 16 <para>
17 The <literal>ngx_stream_core_module</literal> module 17 The <literal>ngx_stream_core_module</literal> module
349 By default, nginx caches answers using the TTL value of a response. 349 By default, nginx caches answers using the TTL value of a response.
350 The optional <literal>valid</literal> parameter allows overriding it: 350 The optional <literal>valid</literal> parameter allows overriding it:
351 <example> 351 <example>
352 resolver 127.0.0.1 [::1]:5353 valid=30s; 352 resolver 127.0.0.1 [::1]:5353 valid=30s;
353 </example> 353 </example>
354 <note>
355 To prevent DNS spoofing, it is recommended
356 configuring DNS servers in a properly secured trusted local network.
357 </note>
354 </para> 358 </para>
355 359
356 <para id="resolver_status_zone"> 360 <para id="resolver_status_zone">
357 The optional <literal>status_zone</literal> parameter (1.17.1) 361 The optional <literal>status_zone</literal> parameter (1.17.1)
358 enables 362 enables