[126534] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Root Zone DNSSEC Deployment Technical Status Update

daemon@ATHENA.MIT.EDU (Joe Abley)
Thu May 20 13:54:27 2010

From: Joe Abley <jabley@hopcount.ca>
In-Reply-To: <AANLkTimPUUBpU2ZSjsVbh93BmlqF2Wo2ziNeEKXXn_DG@mail.gmail.com>
Date: Thu, 20 May 2010 13:54:06 -0400
To: itservices88 <itservices88@gmail.com>
X-SA-Exim-Mail-From: jabley@hopcount.ca
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org


On 2010-05-20, at 12:18, itservices88 wrote:

> I have these in named.conf
>=20
>        dnssec-enable yes;
>        dnssec-validation yes;
> //      dnssec-lookaside "." trust-anchor "DLV.ISC.ORG";
> With the trust-anchor uncommented, as soon as i enable and reload =
bind, dig
> gives timeout, while dig has no issues with first two commands =
enabled.

You should probably take these questions to the bind-users list, where =
there are many people who will help you. See =
<https://lists.isc.org/mailman/listinfo>.

Configuring DLV is quite possibly not what you want in this instance.


Joe=


home help back first fref pref prev next nref lref last post