[126534] in North American Network Operators' Group
Re: Root Zone DNSSEC Deployment Technical Status Update
daemon@ATHENA.MIT.EDU (Joe Abley)
Thu May 20 13:54:27 2010
From: Joe Abley <jabley@hopcount.ca>
In-Reply-To: <AANLkTimPUUBpU2ZSjsVbh93BmlqF2Wo2ziNeEKXXn_DG@mail.gmail.com>
Date: Thu, 20 May 2010 13:54:06 -0400
To: itservices88 <itservices88@gmail.com>
X-SA-Exim-Mail-From: jabley@hopcount.ca
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
On 2010-05-20, at 12:18, itservices88 wrote:
> I have these in named.conf
>=20
> dnssec-enable yes;
> dnssec-validation yes;
> // dnssec-lookaside "." trust-anchor "DLV.ISC.ORG";
> With the trust-anchor uncommented, as soon as i enable and reload =
bind, dig
> gives timeout, while dig has no issues with first two commands =
enabled.
You should probably take these questions to the bind-users list, where =
there are many people who will help you. See =
<https://lists.isc.org/mailman/listinfo>.
Configuring DLV is quite possibly not what you want in this instance.
Joe=