Re: [Opendnssec-user] More segfaults in ods-ksmutil!

2012-05-15 Thread Sander Smeenk
Quoting Rickard Bellgrim (rick...@opendnssec.org): > > This bug (or at least one that looks very much like it) has been fixed > > in version 1.3.8 . The release of this version is imminent, so hopefully > > you will have a fix very soon. > Sander: Was it fixed? I have not checked this myself. At

Re: [Opendnssec-user] AXFR of signed zone - failed

2012-05-15 Thread Daniel Salzman
On 05/15/2012 03:22 PM, Matthijs Mekking wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi Daniel, Does this still occur in trunk, revision r6336? The revision r6336 works fine now :-) I committed a fix today, that checks if the query overflows. I encountered an assertion error when d

Re: [Opendnssec-user] AXFR of signed zone - failed

2012-05-15 Thread Matthijs Mekking
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi Daniel, Does this still occur in trunk, revision r6336? I committed a fix today, that checks if the query overflows. I encountered an assertion error when doing a large outbound zone transfer, no TSIG. I guess you use TSIG, and hit a similar probl

[Opendnssec-user] ods-signerd 1.4.0a1 crasher

2012-05-15 Thread Paul Wouters
I managed to get a trace of the ods-signerd crasher: (gdb) bt #0 0x0041c960 in namedb_del_denial (db=0x21d3590, denial=0x7fc1592807c0) at signer/namedb.c:837 #1 0x0041cd9d in namedb_del_nsec3_trigger (db=0x21d3590, domain=0x7fc19a12daf0, rollback=0) at signer/namedb.c:6

[Opendnssec-user] AXFR of signed zone - failed

2012-05-15 Thread Daniel Salzman
Hi, when downloading signed zone from OpenDNSSEC (1.4.0a1, 1.4.0-trunk), the ods-signerd breaks. The zone is uploaded and signed successfully . May 15 12:48:04 nic ods-signerd: [socket] handle incoming tcp connection May 15 12:48:04 nic ods-signerd: [netio] handler added May 15 12:48:04 nic ods

Re: [Opendnssec-user] Large zone reading bug when signing?

2012-05-15 Thread Matthijs Mekking
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi Paul, These errors come from ldns (Syntax error, could not parse the RR's TTL). Are you able to read the zone with ldns-read-zone? Best regards, Matthijs On 05/15/2012 03:53 AM, Paul Wouters wrote: > > When signing a big zone (4M entries, opt

Re: [Opendnssec-user] DelegationSignerSubmitCommand key identification

2012-05-15 Thread Daniel Salzman
Hi, The main problem is, that the input to DelegationSignerSubmitCommand doesn't contain any key identifier (OpenDNSSEC 1.3.8). Example of input: aaa.cz. 3600 IN DNSKEY 257 3 8 AwEAAcnuct87tqDPCXVLKeFYY6/g796Ung75/Gqct7AJuxqPfmex3zGo4Izuz44Sv/PoNgCGdXXQcomzHabhFCd4ZkXxeiH5AxahEr+CympCvKfR0n+j