>       --- 9.6.1 released ---
> 
> 2607. [bug]           named could incorrectly delete NSEC3 records for
>                       empty nodes when processing a update request.  
>                       [RT #19749]

I installed 9.6.1 with a cleaned zone and the problem has not reocurred.
Thank you.

> For your information NSEC3 provides no benefit for this zone as it
> has a known structure which can be easily mapped. 

Indeed, I hadn't thought of that. I just wanted to test NSEC3 with
dynamic updates and this RBL zone was an ideal target. It's only queried
by my own servers, so I don't have to worry about resolvers not handling
NSEC3 properly and if anything breaks, it only affects a small part of
spam scoring on the mail gateways.


Hauke.


Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
bind-users mailing list
[email protected]
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to