I now use a backport to glibc 2.9 of the RedHat patches in 2.11 instead of my own patch set.
See https://bugs.launchpad.net/ubuntu/+source/glibc/+bug/288011/comments/3 OpenSSH still needs recompiling and "options edns0" in /etc/resolv.conf if you want it to check DNSSEC flags on SSHFP host fingerprint lookups. -- Bind9 (8.04) not returning 'ad' flag when dnssec is enabled https://bugs.launchpad.net/bugs/242956 You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to openssh in ubuntu. -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs