Re: DNSSEC and NSEC missing ZSK?

2021-02-09 Thread Mal via bind-users
On 09/02/2021 10:47 pm, @ wrote: > Well, I have finally ogttenteh test zone to the point where dnssec-verify is > happy and everything that I can check also seems happy except dnsviz which is > very very VERY angry and basically says the zone is entirely garabge. I am > hoping this is a propag

Re: Updating a DNSSEC config to use a different algorithm

2021-02-01 Thread Mal via bind-users
On 02/02/2021 12:10 am, @lbutlr wrote: > I've been using alg-7 for DNS, but that is no longer recommended. How > difficult is it to change the signing algorithm and what is the process (Bind > 9.16.11)? I migrated recently from Alg8 to Alg13, no drama..  My registry does not have a user portal

Re: DNSSEC validation via DLV

2019-07-18 Thread Mal via bind-users
On 19/07/2019 9:27 am, p...@vspace.co.za wrote: > > Problem being, no options exist as to export the DS record of co.za, com.au > or net.au domains to the respective registrars, being namecheap.com and > axxess.co.za. > Change registry right ? Crazy domains supports them for the ".com.au"

Re: DNSSEC validation via DLV

2019-07-18 Thread Mal via bind-users
Not a difficult process really.. -Configure a DNSSEC enabled name server -Create a some zone keys (dnssec-keygen) -Sign your zone (dnssec-signzone) -Update your nameserver configuration to point to the signed zone file -Export your DS records (dsset) to the domain registration company (EPP). Con