Meaning of "info: generate keytag query..."
sca at andreasschulze.de
Mon Mar 19 18:54:50 UTC 2018
Am 19.03.2018 um 18:49 schrieb Matthias Fischer via Unbound-users:
> I run 'unbound 1.7.0' on an IPFire 2.19 / Core 119 firewall router for a
> few days. Today I found some messages I never saw before:
> 02:47:12 unbound: [22034:0] info: generate keytag query _ta-4a5c-4f66. NULL IN
> 14:46:54 unbound: [22034:0] info: generate keytag query _ta-4a5c-4f66. NULL IN
> 18:38:41 unbound: [22034:0] info: generate keytag query _ta-4a5c-4f66. NULL IN
> I'd like to know what this means - any hints?
I initially patched unbound to log this stuff. Wouter included the trivial patch in 1.7.0.
( in fact I only changed the loglevel )
My intention to get this logged was the ability to find these log entries
in our central log aggregation. There I really found miss-configured resolvers in my network.
Seeing this in my log today proof I configured my resolver well :-) I'm ready for KSK roll...
That may be useful elsewhere, too.
More information about the Unbound-users