dnssec-signzone: warning: NSEC3 generation requested with no DNSKEY; ignoring

Paul B. Henson henson at acm.org
Fri Apr 26 19:04:04 UTC 2013


On 4/25/2013 11:57 AM, Evan Hunt wrote:

> The warning is spurious and has been fixed in 9.9.3.  It was incorrectly
> checking to see whether there were any DNSKEY records in the zone *before*
> loading them from the key files.  It should have been doing so afterward,
> obviously.

Ah, okay, thanks for the info. It didn't look like anything was broken 
but it's nice to have a confirmation before rolling it out :).




More information about the bind-users mailing list