problem for validate the script dnssec to isc dlv

fakessh @ fakessh at fakessh.eu
Fri Mar 25 01:33:04 UTC 2011


Le vendredi 25 mars 2011 à 09:24 +1100, Mark Andrews a écrit :
> In message <1301004136.12273.106.camel at localhost.localdomain>, "fakessh @" writes:
> > Le vendredi 25 mars 2011 =C3=A0 08:24 +1100, Mark Andrews a =C3=A9crit :
> > > In message <1300993213.12273.96.camel at localhost.localdomain>, "fakessh @"=
> >  write
> > > s:
> > > > hi bind //guru/
> > > > hi isc guru
> > > > hi mark andrews
> > > > hi michel graff
> > >  
> > > There are no DLV records for fakessh.eu.  See below.
> > > 
> > > There are no DS records for fakessh.eu.  See below.
> > > 
> > 
> > necessarily because I can not validate the key through via isc dlv
> 
> One of these is necessary.  You have neither.  Additionally the DS for
> fakessh.eu is the best long term solution as it will be used by more
> people.
> 
> Mark


additionally my registar OVH has not yet
DNSSEC deployment  and I do not know if I can deposit my DS already
me if I insist

>  
> > > Two of the nameservers for your zone are not DNSSEC enabled.   They
> > > do NOT return RRSIG records when asked for the DNSKEY records with
> > > DO=1.  See below.
> > > 
> > > You need to address these issues.
> > > 
> > > Mark
> > > 
-- 
gpg --keyserver pgp.mit.edu --recv-key 092164A7
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x092164A7
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: Ceci est une partie de message num?riquement sign?e
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20110325/656e341e/attachment.bin>


More information about the bind-users mailing list