Hi,

I'm testing a DNSSEC server using BIND 9.7.3 and OpenDNSSEC. I have 
succesfully signed my local zone with ods tools and NSEC3 RSA/SHA1 (algorithms 
5 and 7, both being aliases), but BIND refuses to load the zone complaining 
these algorithms are not supported:

general: warning: zone myzone.mydomain.org/IN: unsupported nsec3 hash 
algorithm: 7
general: error: zone myzone.mydomain.org/IN: no supported nsec3 hash algorithm
general: error: zone myzone.mydomain.org/IN: not loaded due to errors.

(the same happens with algorithm 5).

Could this be a BIND bug? (Someone told me these algorithms are fully 
supported).

Kind regards,
Antonio 
_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe 
from this list

bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to