dnssec-signzone error after updating to 9.6.2-P1

Nate Itkin bind-users at konadogs.net
Tue Mar 30 02:15:45 UTC 2010


On Tue, Mar 30, 2010 at 12:39:58PM +1100, chris liesfield wrote:
> Seeing this after upgrading to 9.6.2-P1.
> We've made no other changes to the host or any configuration files, etc.
> /var/named # dnssec-signzone  -g -o xxx.xxx.gov.au db.xxx.xxx.gov.au
> dnssec-signzone: fatal: no self signed KSK's found
> No idea what's going on here and we need advice on how to go about fixing it
> ASAP.
> Thanks.
> Chris.


9.6.2-P1 has worked ok for me [so far]. Two ideas that might yield more 
info for us to look at (increase v level as needed, but start with 1):

named-checkzone xxx.xxx.gov.au db.xxx.xxx.gov.au
dnssec-signzone -g -v 1 -o xxx.xxx.gov.au db.xxx.xxx.gov.au

Nate Itkin



More information about the bind-users mailing list