tree 509d14b8de9c431dbd74ce2833491702be0ef96f
parent 569cde226985532f06532904f20d508802fb8d78
author Manojkiran Eda <manojkiran.eda@gmail.com> 1587051175 +0530
committer Andrew Geissler <geissonator@yahoo.com> 1588041091 -0500

Override the fallbackDNS property

- fallbackDNS is a space-separated list of IPv4 and IPv6
  addresses to use as the fallback DNS servers. Any per-link
  DNS servers obtained from systemd-networkd.service take
  precedence over this setting, as do any servers set via
  DNS= above or /etc/resolv.conf.

- This setting is hence only used if no other DNS server
  information is known. If this option is not given, a
  compiled-in list of DNS servers is used instead.

- The default compiled list of DNS for systemd-resolved are
  ['1.1.1.1', '8.8.8.8', '1.0.0.1', '8.8.4.4',
   '2606:4700:4700::1111','2001:4860:4860::8888',
   '2606:4700:4700::1001', '2001:4860:4860::8844']
   which are google DNS servers.

 - The problem with this is that, when there is no DNS configuration
   on BMC(or the customer removes it),resovld would still used the
   precompiled compiled list of google DNS for quires without the
   user knowledge(security issue)

 - This commit would override the fallbackDNS to NULL

(From meta-phosphor rev: 7ce78b26c90ada8c203e17d76de8f481f1a9cf5d)

Signed-off-by: Manojkiran Eda <manojkiran.eda@gmail.com>
Change-Id: Ib743887a3155d48e5dbe4735bfed0ad548d6a610
Signed-off-by: Andrew Geissler <geissonator@yahoo.com>
