Re: signing for a hidden primary

2023-01-22 Thread Eric K Germann via bind-users
I use an unsigned hidden master I maintain from inside my local network. This feeds a secondary server where the signing is done and it acts as a master to other secondaries. Works well. Started as an experiment and works well enough I've left it alone. Hidden master >> DNSSEC signing

Re: BIND 9.18.6 disables RSASHA1 at runtime?

2022-09-13 Thread Eric K Germann via bind-users
I would propose one line per protocol for disabled methods. This would allow for easier log parsing On 2022-09-13 06:28, Petr Špaček wrote: On 02. 09. 22 15:49, Anand Buddhdev wrote: On 02/09/2022 13:53, Mark Andrews wrote: Hi Mark, We don't log rsamd5 is disabled now ec or ed curves