Comment 11 for bug 1727237

Steve Langasek (vorlon) wrote :

My understanding is that systemd-resolved as shipped in Ubuntu is meant to not have DNS caching enabled at all.

Looking at the default resolved.conf and the resolved.conf(5) manpage, it appears we do have DNS caching enabled.

Dimitri, is this an oversight, or was there some further discussion with the Security Team that resulted in caching being enabled?