[dnssec] issue resolving unsigned child zone using DLV
Florian Weimer
fw at deneb.enyo.de
Sun Mar 15 20:40:51 UTC 2009
* Shane W.:
>> There should be a signed NSEC record showing that the delegation is,
>> indeed, unsigned.
>
> Well we're using nsec3 if that matters but if it's not
> being signed correctly, is that likely a bug with how we're
> calling dnssec-signzone?
Ah, in that case, you probably haven't upgraded some of the
authoritative servers to BIND 9.6.
More information about the bind-users
mailing list