auto-dnssec maintain and no key: no error message?

2013-07-30 Thread Stephane Bortzmeyer
When I run a BIND with auto-dnssec maintain and inline-signing yes, if I create no key, there is no error message and, worse, the log file says the zone is signed: Jul 30 16:31:42 u12-33673 named[1605]: zone auto.rd.nic.fr/IN (unsigned): loaded serial 2013073000 Jul 30 16:31:42 u12-33673

Re: auto-dnssec maintain and no key: no error message?

2013-07-30 Thread Jeremy C. Reed
On Tue, 30 Jul 2013, Stephane Bortzmeyer wrote: Of course, there is no signature: % dig +multi @localhost SOA auto.rd.nic.fr Add +dnssec ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users

Re: auto-dnssec maintain and no key: no error message?

2013-07-30 Thread Stephane Bortzmeyer
On Tue, Jul 30, 2013 at 09:50:46AM -0500, Jeremy C. Reed jr...@isc.org wrote a message of 7 lines which said: Of course, there is no signature: % dig +multi @localhost SOA auto.rd.nic.fr Add +dnssec [I thought it was in my .digrc.] It changes nothing. Without a key, BIND could not

Re: auto-dnssec maintain and no key: no error message?

2013-07-30 Thread Evan Hunt
When I run a BIND with auto-dnssec maintain and inline-signing yes, if I create no key, there is no error message and, worse, the log file says the zone is signed: Thanks for pointing this out. It's not really an error, but the log should certainly be clearer about what's going on. An