Help on DNSSEC

Tony Finch dot at dotat.at
Wed Nov 6 11:38:03 UTC 2013


babu dheen <babudheen at yahoo.co.in> wrote:
>
> I would like to understand DNSSEC on BIND Recusive DNS server running
> in RHEL 5.0.

First upgrade BIND to version 9.8 or newer.

Check your network connectivity isn't funted. See for instance
http://www.cisco.com/web/about/security/intelligence/dnssec.html

Then add the following to your named.conf options section:

	dnssec-validation auto;
	dnssec-lookaside auto;

Tony.
-- 
f.anthony.n.finch  <dot at dotat.at>  http://dotat.at/
Forties, Cromarty: East, veering southeast, 4 or 5, occasionally 6 at first.
Rough, becoming slight or moderate. Showers, rain at first. Moderate or good,
occasionally poor at first.


More information about the bind-users mailing list