testing validation

Carlos Ribas carlos at ansp.br
Wed Apr 18 18:07:15 UTC 2012


Because this IP has dnssec enabled and raindrop.us is signed :-)

Regards,

---------------------------------
Carlos Eduardo Ribas



2012/4/18 Alan Batie <alan at peak.org>

> On 4/18/12 10:46 AM, Carlos Ribas wrote:
>
> >     Is your recursive resolver also authoritative for raindrop.us?
> > If so, you will not get the "ad" flag. You can
> > test with DNS-OARC resolver [1]:
> >
> > # dig +dnssec +multiline @149.20.64.20 raindrop.us
>
> Why would 149.20.64.20 return ad then?  It's not authoritative either...
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20120418/2d4aff4e/attachment.html>


More information about the bind-users mailing list