problem for validate the script dnssec to isc dlv

fakessh @ fakessh at fakessh.eu
Sun Mar 27 18:45:03 UTC 2011


That would be the key with id 47103 in your case. The one that has SEP
flag, the one that only signs DNSKEY records and not others.
Regards,
 Torinthiel
http://www.mail-archive.com/bind-users@lists.isc.org/msg09107.html

This is your word

i reread the thread to fevrier
http://www.mail-archive.com/bind-users@lists.isc.org/msg09084.html

Mark Andrews quote 
Because there are already DLV records for the key in the DLV.

;; ANSWER SECTION:
fakessh.eu.dlv.isc.org. 3529    IN      DLV     47103 3 2 
68096942650C1DD89D5BE43A9EEA05BA9C20F09EDC55309F4F1CD348 4D8ED07B
fakessh.eu.dlv.isc.org. 3529    IN      DLV     47103 3 1 
CFEA04C5B918359273D6BAC07AE7F2DF5225E357


here i am 
r13151 ~]# dig fakessh.eu.dlv.isc.org @8.8.8.8

; <<>> DiG 9.7.3-RedHat-9.7.3-1.el5 <<>> fakessh.eu.dlv.isc.org @8.8.8.8
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 21853
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0

;; QUESTION SECTION:
;fakessh.eu.dlv.isc.org.                IN      A

;; AUTHORITY SECTION:
dlv.isc.org.            1695    IN      SOA     ns-int.isc.org. hostmaster.isc.org. 2011032703 7200 3600 2419200 3600

;; Query time: 20 msec
;; SERVER: 8.8.8.8#53(8.8.8.8)
;; WHEN: Sun Mar 27 20:34:49 2011
;; MSG SIZE  rcvd: 94

[root at r13151 ~]# 
r13151 ~]# dig fakessh.eu.dlv.isc.org         

; <<>> DiG 9.7.3-RedHat-9.7.3-1.el5 <<>> fakessh.eu.dlv.isc.org
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: SERVFAIL, id: 19904
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 0

;; QUESTION SECTION:
;fakessh.eu.dlv.isc.org.                IN      A

;; Query time: 4 msec
;; SERVER: 127.0.0.1#53(127.0.0.1)
;; WHEN: Sun Mar 27 20:35:15 2011
;; MSG SIZE  rcvd: 40

it seems there is no deposit in dlv isc but I can not validate my own

I have the answer about the DS field. ovh do not want to do and they say RTFM and desmerdevous

and i requote
how to do this ... the SEP record



Le dimanche 27 mars 2011 à 20:08 +0200, Torinthiel a écrit :
> On 03/27/11 19:09, fakessh @ wrote:
> > in insurance I googled
> > no result
> > 
> > how to do this ...
> 
> The procedure is everywhere around the ISC site.
> See eg.
> 
> http://www.isc.org/solutions/dlv
> 
> https://dlv.isc.org/about/using
> 
> my mail on 3rd jan, 21:00 in reply to yours (thread inconsistency dnssec
> debuguers response and writing	conseil	for	new areas zone)
> 
> Torinthiel
> 
> _______________________________________________
> bind-users mailing list
> bind-users at lists.isc.org
> https://lists.isc.org/mailman/listinfo/bind-users
-- 
gpg --keyserver pgp.mit.edu --recv-key 092164A7
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x092164A7
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: Ceci est une partie de message num?riquement sign?e
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20110327/d3a18d4f/attachment.bin>


More information about the bind-users mailing list