Re: Bind 9.9.x inline signing

2012-06-08 Thread Mark Elkins
Some updates: Eventually got VirtualBox to behave and now have two virtual instances of Gentoo/BIND on my box. Now I have a cleaner test environment. Rebuilt Evans demo and its now working well. Running BIND 9.9.1 and 'haveged' on both machines. I have modified my 'signer' script so if the zone t

RE: Bind 9.9.x inline signing

2012-06-03 Thread Spain, Dr. Jeffry A.
> I didn't like the fact that the unsigned serial (which I manage) was lower > than that of the signed zone. Making it bigger than the signed zones version > appears to have gotten the zones back in sync - however the slave is still > not getting any Notifies (and has not yet caught up). With "

Bind 9.9.x inline signing

2012-06-03 Thread Mark Elkins
Eventually got down to some experimenting again. These are observations - which may help others. I followed example 1 of Evan Hunts https://kb.isc.org/article/AA-00626/0/Inline-Signing-in-ISC-BIND-9.9.0-Examples.html (I'm using bind 9.9.1) I did change the name of the zone and didn't bother with