9.16.12 tries to read keys that it does not need?

Carl Byington carl at byington.org
Mon Mar 29 18:17:40 UTC 2021


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

dns_dnssec_findmatchingkeys: error reading key file Kfive-ten-
sg.com.+008+39376.private: permission denied

Those key files are 0600 root:root. Bind should never need to read them
since we are not doing in-line signing or key rotation within bind.

That is just a log message - it does not seem to have any operational
impact.


-----BEGIN PGP SIGNATURE-----

iHMEAREKADMWIQSuFMepaSkjWnTxQ5QvqPuaKVMWwQUCYGIZYBUcY2FybEBmaXZl
LXRlbi1zZy5jb20ACgkQL6j7milTFsEBoQCcD5Ohlvnf9NnLKLX7VRZKelM62akA
n03DV9O+59R6CBUMlQz/0qdeyj8p
=yFia
-----END PGP SIGNATURE-----




More information about the bind-users mailing list