Hi guys.

I've made some progress with narrowing down the cause of this problem.
It looks like the whole "private/tlsmgr" thing is a bit of a red
herring, and the actual problem seems to be that the DNS query that is
sent lacks the AD flag.

I've confirmed that RES_USE_DNSSEC is included in the flags when the DNS
functions are called within the code, so I'm suspecting that
systemd.resolvd has something to do with it. E.g. I've just noticed that
when I run "systemd-resolve --status", the output includes:

    DNSSEC supported: no

Which looks like a pretty good reason for this behaviour.

Tomorrow I'll try changing the systemd.resolvd settings to enable DNSSEC
and see if that makes a difference.

Nick.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1868955

Title:
  after upgrade to 20.04: posttls cannot connect to private/tlsmgr

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/postfix/+bug/1868955/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to