Re: About root zones

2012-01-05 Thread Matus UHLAR - fantomas
On 02.01.12 17:03, Barry Margolin wrote: >In that case, you probably shouldn't enable the option. I'm not even >suggesting that the option be on by default. > >Actually, does libresolv really use those other facilities? In article , Matus UHLAR - fantomas wrote: highly depends on configurati

Re: View-specific logging

2012-01-05 Thread Florian Weimer
* JINMEI Tatuya / 神明達哉: > At Mon, 02 Jan 2012 09:42:29 +, > Florian Weimer wrote: > >> I would like to switch on query logging for specific views only. Is >> this possible using BIND 9.7 (or any other BIND version, for that >> matter)? > > As far as I know it's not possible with any version

DNSSEC Next key event

2012-01-05 Thread Per-Olof Axelsson
Hi, I have a question about DNSSEC and "Next key event". I have created 4 keys (ZSK) in advance. Every key has an active period of 3 month and are published 3 days before activation time and inactivated 3 days after. I have set the following options in named.conf dnssec-enable yes; dnssec-vali

Re: DNSSEC and IXFR

2012-01-05 Thread Matus UHLAR - fantomas
Is it possible to update DNSSEC-signed domain, re-sign and generate small differencies to be transferred by IXFR? Does it apply with dynamic updates, and with manually configur4ed zones (via ixfr-from-differencies turned on)? On 25.11.11 17:18, Evan Hunt wrote: It works fine with dynamic updat

.IN Domain is DNSSEC enabled or not

2012-01-05 Thread Gaurav Kansal
Dear All, I am new to DNSSEC. I purchase a new domain especially for testing dnssec. When i ask my domain seller to put my DS key in .IN Domain, they say that .IN Domain is still not ready for this But as per my knowledge .IN is DNSSEC ready. I do the "dig @8.8.8.8 in. NS +dnssec" query, and it