Am Mittwoch 25 November 2009 schrieb Alan Clegg:
> There is no DS record for dnssec-tools.org in .org (chain of trust is
> broken), so you can't validate the response -- thus the data being
> passed back to you.

Ok, that explains it.

Are there any example domains with known-broken dnssec records with a full 
trust chain?

-- 
Hanno Böck              Blog:           http://www.hboeck.de/
GPG: 3DBD3B20           Jabber/Mail:    ha...@hboeck.de

http://schokokeks.org - professional webhosting

Attachment: signature.asc
Description: This is a digitally signed message part.

_______________________________________________
bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to