[Dnssec-trigger] dnssec trigger snapshot 0.8 SSL test

Jan-Piet Mens jpmens.dns at gmail.com
Tue Nov 15 14:30:02 UTC 2011


Hello Wouter,

> There is a snapshot of 0.8 available.

I've just checked into a hotel and have installed this snapshot, with
the following results:

        $ dig +short rs.dns-oarc.net txt
        rst.x476.rs.dns-oarc.net.
        rst.x485.x476.rs.dns-oarc.net.
        rst.x490.x485.x476.rs.dns-oarc.net.
        "62.253.172.149 DNS reply size limit is at least 490"
        "62.253.172.149 lacks EDNS, defaults to 512"
        "Tested at 2011-11-15 14:19:23 UTC"

        $ sudo /usr/sbin/dnssec-trigger-control status
        at 2011-11-15 15:26:15
        authority 192.58.128.30: error no RRSIGs in reply
        cache 194.168.4.123: error no RRSIGs in reply
        cache 194.168.8.123: error no RRSIGs in reply
        state: nodnssec insecure

        $ cat /etc/resolv.conf
        domain GUEST
        search intern
        nameserver 194.168.8.123
        nameserver 194.168.4.123

No DNSSEC for my Mac :-(

I'll be here until early Thursday, and I'm willing to test, so just tell
me what I should do ;-)

Regards,

        -JP



More information about the dnssec-trigger mailing list