Re: DNSSEC for recursive server

2010-05-21 Thread Adam Tkac
On Fri, May 21, 2010 at 09:54:01AM +0300, Techi wrote: > Hallo, > I try to setup (=prepare) the our DNS servers for the DNSSEC era. > I have a Centos 5.x with Bind 9.3.6-4. I have one problem and 2 questions. > The problem is that the specific version seems to lack support for DNSSEC > validation!

Re: DNSSEC for recursive server

2010-05-21 Thread Stephane Bortzmeyer
On Fri, May 21, 2010 at 09:54:01AM +0300, Techi wrote a message of 46 lines which said: > I have a Centos 5.x with Bind 9.3.6-4. That's an extremely old version. Even Debian :-) has a more recent one. For instance, you won't be able to validate the root (which uses SHA256) or .ORG (which use

DNSSEC for recursive server

2010-05-20 Thread Techi
Hallo, I try to setup (=prepare) the our DNS servers for the DNSSEC era. I have a Centos 5.x with Bind 9.3.6-4. I have one problem and 2 questions. The problem is that the specific version seems to lack support for DNSSEC validation! named-checkconf returns the following error: /etc/named.conf:212