summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--drill/drill.1.in5
-rw-r--r--drill/drill.c2
-rw-r--r--examples/ldns-dane.1.in3
-rw-r--r--examples/ldns-dane.c2
4 files changed, 10 insertions, 2 deletions
diff --git a/drill/drill.1.in b/drill/drill.1.in
index 778ba249..b6d74f65 100644
--- a/drill/drill.1.in
+++ b/drill/drill.1.in
@@ -83,6 +83,11 @@ Chase the signature(s) of 'name' to a known key or as high up in
the tree as possible.
.TP
+\fB\-I \fIIPv4 or IPv6 address\fR
+Source address to query from. The source address has to be present
+on an interface of the host running drill.
+
+.TP
\fB\-V \fIlevel\fR
Be more verbose. Set level to 5 to see the actual query that is sent.
diff --git a/drill/drill.c b/drill/drill.c
index e5461578..b967ad94 100644
--- a/drill/drill.c
+++ b/drill/drill.c
@@ -29,11 +29,11 @@ usage(FILE *stream, const char *progname)
fprintf(stream, "\n\targuments may be placed in random order\n");
fprintf(stream, "\n Options:\n");
fprintf(stream, "\t-D\t\tenable DNSSEC (DO bit)\n");
- fprintf(stream, "\t-I\t\tsource address to query from\n");
#ifdef HAVE_SSL
fprintf(stream, "\t-T\t\ttrace from the root down to <name>\n");
fprintf(stream, "\t-S\t\tchase signature(s) from <name> to a know key [*]\n");
#endif /*HAVE_SSL*/
+ fprintf(stream, "\t-I <address>\tsource address to query from\n");
fprintf(stream, "\t-V <number>\tverbosity (0-5)\n");
fprintf(stream, "\t-Q\t\tquiet mode (overrules -V)\n");
fprintf(stream, "\n");
diff --git a/examples/ldns-dane.1.in b/examples/ldns-dane.1.in
index 8f05d7f6..b65e64f0 100644
--- a/examples/ldns-dane.1.in
+++ b/examples/ldns-dane.1.in
@@ -151,6 +151,9 @@ Read TLSA record(s) from \fItlsafile\fR. When \fIname\fR and \fIport\fR
are also given, only TLSA records that match the \fIname\fR, \fIport\fR and
\fItransport\fR are used. Otherwise the owner name of the TLSA record(s)
will be used to determine \fIname\fR, \fIport\fR and \fItransport\fR.
+.IP -T
+Return exit status 2 for PKIX validated connections without (secure)
+TLSA records(s)
.IP -u
Use UDP transport instead of TCP.
.IP -v
diff --git a/examples/ldns-dane.c b/examples/ldns-dane.c
index 2ade5c02..93c18e54 100644
--- a/examples/ldns-dane.c
+++ b/examples/ldns-dane.c
@@ -125,7 +125,7 @@ print_usage(const char* progname)
printf("\t-t <tlsafile>\tdo not use DNS, "
"but read TLSA record(s) from <tlsafile>\n"
);
- printf("\t-T\t\tReturns exit status 2 for PKIX validated connections\n"
+ printf("\t-T\t\tReturn exit status 2 for PKIX validated connections\n"
"\t\t\twithout (secure) TLSA records(s)\n");
printf("\t-u\t\tuse UDP transport instead of TCP\n");
printf("\t-v\t\tshow version and exit\n");