Configure the resolver rather than fight it #25

Merged
jschoubben merged 1 commits from fix/configure-the-resolver-rather-than-fight-it into main 2026-09-14 16:45:58 +00:00
1 Commits
Author SHA1 Message Date
jschoubben fa5e5cb912 Configure the resolver rather than fight it
The first attempt wrote /etc/resolv.conf. On these images that is a symlink
owned by systemd-resolved, so the file is either reverted or the link is broken
— found by reading a running machine instead of assuming the change had worked.

The real shape shows in resolvectl: the machine has sensible global fallbacks,
and the link carrying the default route has exactly one server, the uplink
gateway. resolved will not reach a global fallback while the link has a server
of its own, so one unanswered packet is one failed lookup. Three runs have died
that way, each long after the egress check passed.

The uplink stays first, so the modelled path is still what is used and still
what the check proves. Verified on a live machine: three servers on the link,
uplink first, resolution intact.
2026-09-14 18:45:40 +02:00