Thanks to all for the fast reply and the detailed answers.
And thank you very mutch for the verifing option of dnssec-signzone.
With it (and your help) I've learned again a bit more about dnssec.
> In message <20090624211854.a3be222...@thrintun.hactrn.net>, Rob
> Austein writes:
> > At Wed, 24 Ju
In message <20090624211854.a3be222...@thrintun.hactrn.net>, Rob Austein writes:
> At Wed, 24 Jun 2009 18:23:52 +, Evan Hunt wrote:
> >
> > On Wed, Jun 24, 2009 at 05:45:33PM +0200, holger.zule...@arcor.net wrote:
> > > I have some issues with dnssec-signzone under BIND 9.7.0a1.
> > >
> > > I
At Wed, 24 Jun 2009 18:23:52 +, Evan Hunt wrote:
>
> On Wed, Jun 24, 2009 at 05:45:33PM +0200, holger.zule...@arcor.net wrote:
> > I have some issues with dnssec-signzone under BIND 9.7.0a1.
> >
> > I'm using different algorithms for key- and zone signing keys.
>
> You can use multiple algor
On Wed, Jun 24, 2009 at 05:45:33PM +0200, holger.zule...@arcor.net wrote:
> I have some issues with dnssec-signzone under BIND 9.7.0a1.
>
> I'm using different algorithms for key- and zone signing keys.
That's a problem.
> Does it mean that it is no longer possible to use different key algorithm
I have some issues with dnssec-signzone under BIND 9.7.0a1.
I'm using different algorithms for key- and zone signing keys.
This is the list of currently used keys:
$ dnssec-zkt .
Keyname Tag Typ Sta Algorit Generation Time
sub.example.de. 56595 KSK
5 matches
Mail list logo