Re: rndc-key has expired

2011-03-22 Thread fakessh @
I edit the file named.conf modification update-policy { grant * self * A TXT; }; to update-policy local; it seems more logical. but I'm still stuck on the validation of isc dlv. the script tells me lost keys and I am therefore blocks any update is welcome Le mercredi 23 mars 2

Re: Master ns on internal lan

2011-03-22 Thread Joseph S D Yao
What the heck is this??? "To: x_bind-user...@nospam.pz.podzone.net" On Sun, Mar 20, 2011 at 10:13:29AM +, x_bind-user...@nospam.pz.podzone.net wrote: > Hi, > > I'm trying to figure out how to configure my nameservers so that the > master can reside on an internal LAN *only* address. > > I

Re: rndc-key has expired

2011-03-22 Thread fakessh @
I changed options update-policy { grant fakessh.eu. name fakessh.eu. A TXT; }; since update-policy { grant * self * A TXT; }; Le mardi 22 mars 2011 à 14:59 +0100, fakessh @ a écrit : > hi bind guru > > > It appears after the log that my signature rndc-key has expired.

dnssec-signzone: fatal: cannot sign zone with non-private dnskey

2011-03-22 Thread Ivo
Hello, I am trying to sign a zone(domain.nx) using Bind-9.7.3 with PCKS11/OpenSC, I am able to generate key on smartcard using (pkcs11-keygen) and export a meta-description info with dnssec-keyfromlabel, however dnssec-signzone seem to have problem finding a private key. #./dnssec-signzone -E pkc

rndc-key has expired

2011-03-22 Thread fakessh @
hi bind guru It appears after the log that my signature rndc-key has expired. how to update it -- gpg --keyserver pgp.mit.edu --recv-key 092164A7 http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x092164A7 signature.asc Description: Ceci est une partie de message numériquement signée