On 2015-01-04 19:30, Chris Vaughan wrote:
I have been given the task of implementing DMARC in our BIND servers due the 
recommendation of a security audit on our systems.

Whenever I create the record in the forward server, and refresh the zone, it 
comes out in the slave zone with escape characters inserted in the TXT record.

This occurs in every version of BIND that I have tried, from 9.7 up to 9.10.

Primary test zone record:

_dmarc.<domain>. IN TXT "v=DMARC1; p=reject; rua=root@dns-test-1.<domain>; aspf=s; 
rf=afrf; sp=reject"

Slave test zone record:

_dmarc                  TXT     "v=DMARC1\; p=reject\; 
rua=root@dns-test-1.<domain>\; aspf=s\; rf=afrf\; sp=reject"


http://www.dmarc.org/faq.html#s_12 has some information on what is happening here.


--
Dave Warren
http://www.hireahit.com/
http://ca.linkedin.com/in/davejwarren


_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe 
from this list

bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to