btw I forgot to add the DNS response when asked with dig:
OMD[shared_2]:~$ dig aco @signer-0.shared-0.bdorf.yars.io
; <<>> DiG 9.11.4-P2-RedHat-9.11.4-26.P2.el7_9.5 <<>> aco @signer-0.shared-0.bdorf.yars.io
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 25576
;; flags: qr aa rd; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1
;; WARNING: recursion requested but not available
;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 1232
;; QUESTION SECTION:
;aco. IN A
;; AUTHORITY SECTION:
aco. 1800 IN SOA a.dns.nic.aco. hostmaster.lemarit.com. 1620833559 10800 3600 2764800 1800
;; Query time: 1 msec
;; SERVER: 10.20.4.13#53(10.20.4.13)
;; WHEN: Wed May 12 15:33:32 UTC 2021
;; MSG SIZE rcvd: 100