[Pdns-users] Potentially Silly Question! - auth server, dns-(non) sec + sec.

Chris Russell Chris.Russell at knowledgeit.co.uk
Thu Jul 21 18:57:39 UTC 2011


> Running `pdnssec rectify-zone wibble.com` will just add the 'mail' to the ordername column of your records table btw. With DNSSEC in

 HI Stefan,

  I think I've confused the issue with the two backends, I actually set this up as a test as running with one wasn't working.

  To back to the original issue,  I have PDNSsec + DNS-SEC + ipv6 working flawlessly, without issues.  However, for other reasons I need to serve zones where I don't wish to have any signing information in the database for this zone. This means I don't want to run secure-zone or rectify-zone instead keep that zone DNS-SEC free.

  Essentially configuring DNS-SEC on a zone by zone basis.

  The problem is,  I can push records into the DB as per a standard unsigned zone, but pdnssec will not serve these records only the SOA.  So can pdnssec serve unsigned zones where no DNS-SEC related records exist when the g-mysql backend is set to gmysql-dnssec ?

  Or am I   stuck with PDNS serving DNS-SEC enabled zones, OR non DNS-SEC enabled zones but not both :-/




Cheers

Chris

Knowledge I.T.
'Unifying Business Technology'
www.knowledgeit.co.uk

Knowledge Limited, Company Registration: 1554385
Registered Office: New Century House, Crowther Road, Washington, Tyne & Wear. NE38 0AQ
Leeds Office: Viscount Court, Leeds Road, Rothwell, Leeds. LS26 0GR

Tel: 0845 142 0020. Fax: 0845 142 0021

E-Mail Disclaimer: This e-mail message is intended to be received only by persons entitled to receive the confidential information it may contain. E-mail messages to clients of Knowledge IT may contain information that is confidential and legally privileged. Please do not read, copy, forward, or store this message unless you are an intended recipient of it. If you have received this message in error, please forward it to the sender and delete it completely from your computer system.

Please consider the environment before printing this email.



More information about the Pdns-users mailing list