internal named crash, dnssec-validation bug?

2010-11-22 Thread Sue True
Hello, We are running bind-9.7.2-P2 with dnssec-validation enabled for our internal nameservers, and our internal nameservers crashed at the time of reload around 2-4pm EST, one the nameserver with dnssec debug log enabled shows tons of 'deadlock error' for some of the sub-domains under .fr,

Handling of RSASHA256 and RSASHA512 in 9.6.1-P1 ?

2010-08-19 Thread Sue True
Does 9.6.1-P1 as authoritative nameserver support RSASHA256 and RSASHA512 ? We are running 9.7.1-P2 and would like to use RSASHA256 or RSASHA512 to create the keys, but our secondary is still on 9.6.1-P1, can they handle our singed zone with RSASHA256 or RSASHA512, or they have to upgrade ?