[ldns-users] Bug,_or_known_limitation???

Willem Toorop willem at nlnetlabs.nl
Tue Jul 17 10:25:03 UTC 2012


Hi Michael,

This was definitely a bug. I have it resolved in trunk.
Thanks again for finding and reporting!

-- Willem

Op 14-07-12 00:57, Michael Sheldon schreef:
> Tunnelled deep enough to find it. Bug #458 submitted
> 
> Error is in ldns_dnssec_zone_create_rrsigs_flg().  All the signatures
> are being generated, but only the first RRSIG for an rrset is being
> added to the new_rrs list structure for ldns_dnssec_zone_sign_nsec3(),
> which is called by ldns_zone_sign_nsec3().
> 
> 
> Michael Sheldon
> Dev-DNS Services
> GoDaddy.com
> 
>> -------- Original Message --------
>> Subject: [ldns-users] Bug,_or_known_limitation???
>> From: "Michael Sheldon" <msheldon at godaddy.com>
>> Date: Fri, July 13, 2012 3:22 pm
>> To: "ldns-users at open.nlnetlabs.nl" <ldns-users at open.nlnetlabs.nl>
>>
>>
>> When using ldns_zone_sign_nsec3(), if I pass it a keyring having
>> multiple KSK and/or ZSK, it only signs the zone with one of each. Using
>> multiple keys is pretty normal, especially during key rollovers, so it's
>> a necessary thing.
>>
>> So is this a bug?
>>
>> Michael Sheldon
>> Dev-DNS Services
>> GoDaddy.com
>>
>>
>> _______________________________________________
>> ldns-users mailing list
>> ldns-users at open.nlnetlabs.nl
>> http://open.nlnetlabs.nl/mailman/listinfo/ldns-users
> 
> _______________________________________________
> ldns-users mailing list
> ldns-users at open.nlnetlabs.nl
> http://open.nlnetlabs.nl/mailman/listinfo/ldns-users
> 





More information about the ldns-users mailing list