I vote no, if someone is setting up or testing DNSSEC, let's not encourage them
to use a broken dig option!
I tried using the following command and dig core dumped. Note: www is setup as
a CNAME.
dig +trusted-key=trusted-key.key +topdown +sigchase +multiline -ta
www.tuxedo.net
I was wonder
Considering that the 'bind9' package ships the root key (in
/etc/bind/bind.keys), I see no reason why it should not also be shipped
in the dnsutils package as well.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad
I can confirm this for Vivid's 9.9.5.dfsg-6ubuntu1 package.
Not convinced either way in regards to whatever Ubuntu should distribute a
/etc/trusted-key.key file.
(Not my call either.)
** Changed in: bind9 (Ubuntu)
Importance: Undecided => Wishlist
** Changed in: bind9 (Ubuntu)
Status