Jan Včelák <jan.vcelak at nic.cz> wrote:
> We have been reported by one of our users that DNS Made Easy slave
> servers won't transfer zone from Knot DNS master, because Knot DNS
> doesn't send "authoritative response" [sic] for the SOA query.

If your server isn't authoritative for the zone then surely trying to AXFR
it is futile.

(In the past I had a related problem with a different DNS service
provider; they were using RD=1 queries as a configuration liveness check,
separate from their name server. This failed when my server started
refusing recursive queries from non-local clients, even for its
authoritative zones. Two cases of arguably nonconformant configuration
combined to cause an outage.)

