DNS flag day

Ben Croswell ben.croswell at gmail.com
Fri Jan 18 17:18:59 UTC 2019


I shouldn't have posted so closely to responding to the other user.

I am not running 9.8. I was replying to them about firewalls in regards to
their 9.8 issues.

Was just hoping for a statement of 9.x or greater supports the needed
badvers signaling etc.

On Fri, Jan 18, 2019, 12:15 PM Victoria Risk <vicky at isc.org wrote:

>
> On Jan 18, 2019, at 9:09 AM, Ben Croswell <ben.croswell at gmail.com> wrote:
>
> Has ISC released minimum viable BIND version for flag day?
>
>
> Most versions of BIND authoritative servers, going back years, are EDNS
> compatible. Certainly ALL currently supported versions are compatible. I
> see you are running 9.8, which has been EOL since September, 2014.  I think
> that is probably fine, as far as EDNS, however.
>
> The change in BIND related to DNS Flag Day is removing workarounds from
> resolvers, that will retry without EDNS or otherwise try to proceed even
> when EDNS fails. This change came in the BIND 9.13 development version, and
> will be in BIND 9.14, which is not yet released.
>
> The problem you are seeing is most likely firewall-related.
>
> Vicky
>
>
> I looked around and couldn't find anything.
> _______________________________________________
> Please visit https://lists.isc.org/mailman/listinfo/bind-users to
> unsubscribe from this list
>
> bind-users mailing list
> bind-users at lists.isc.org
> https://lists.isc.org/mailman/listinfo/bind-users
>
>
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20190118/4e1836f2/attachment.html>


More information about the bind-users mailing list