Thanks to all for the fast reply and the detailed answers.
And thank you very mutch for the verifing option of dnssec-signzone.
With it (and your help) I've learned again a bit more about dnssec.
> In message <20090624211854.a3be222...@thrintun.hactrn.net>, Rob
> Austein writes:
> > At Wed, 24 Ju
I have some issues with dnssec-signzone under BIND 9.7.0a1.
I'm using different algorithms for key- and zone signing keys.
This is the list of currently used keys:
$ dnssec-zkt .
Keyname Tag Typ Sta Algorit Generation Time
sub.example.de. 56595 KSK
> > Does anybody know if (or when) BIND supports HIP (RFC5205)
> > resource records ?
>
>It's in BIND 9.7. BIND 9.7.0a1 is in the process of being prepared.
>
> 2565. [func] Add support for HIP record. Includes new
functions
> dns_rdata_hip_first(), dns_r
Does anybody know if (or when) BIND supports HIP (RFC5205)
resource records ?
The directory doc/rfc of bind 9.6.1 lists rfc5205, but
named-checkzone will complain with an error:
$ named-checkzone -v
9.6.1
$ named-checkzone -d example.net zone.db
loading "example.net" from "zone.db" class "IN"
z
4 matches
Mail list logo