Re: rndc-key has expired

2011-03-24 Thread Joseph S D Yao
On Wed, Mar 23, 2011 at 10:09:06PM +0100, fakessh @ wrote: > > > I can wait how long before this ends? ... > > Are you running 'rndc' from the same server on which the 'named' is > > running? If not, make sure that both have the same time. ... I don't understand the question. Is it at all rel

Re: rndc-key has expired

2011-03-24 Thread Joseph S D Yao
On Wed, Mar 23, 2011 at 08:57:26PM +0100, fakessh @ wrote: > hi guru > > I'm walking on the same server rndc and named Then all I can suggest is generating a new key. What puzzles me is that I don't see a way to see or adjust dates on the generated keys. -- /**

Re: rndc-key has expired

2011-03-23 Thread Mark Andrews
In message <1300893881.12273.67.camel@localhost.localdomain>, "fakessh @" write s: > I use and bind rndc and dlv isc for dnssec=20 > my zone config like this > > > zone "renelacroute.fr" { > type master; > file "/var/named/renelacroute.fr.hosts"; > auto-dnssec maintain;

Re: rndc-key has expired

2011-03-23 Thread fakessh @
I can wait how long before this ends? Le mercredi 23 mars 2011 à 14:46 -0400, Joseph S D Yao a écrit : > What is this??? To: "fakessh @" > > > On Tue, Mar 22, 2011 at 02:59:22PM +0100, fakessh @ wrote: > > hi bind guru > > > > > > It appear

Re: rndc-key has expired

2011-03-23 Thread fakessh @
gt; > It appears after the log that my signature rndc-key has expired. how to > > update it > > -- > > gpg --keyserver pgp.mit.edu --recv-key 092164A7 > > http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x092164A7 > > > Are you running 'rndc'

Re: rndc-key has expired

2011-03-23 Thread Joseph S D Yao
What is this??? To: "fakessh @" On Tue, Mar 22, 2011 at 02:59:22PM +0100, fakessh @ wrote: > hi bind guru > > > It appears after the log that my signature rndc-key has expired. how to > update it > -- > gpg --keyserver pgp.mit.edu --recv-key 092164A7 > h

Re: rndc-key has expired

2011-03-23 Thread fakessh @
hi isc hi list hi guru of bind errors continue to recur rndc-key expired But I apply the command for create the key dnssec-keygen -a HMAC-MD5 -b 512 -n HOST rndc-key Le mercredi 23 mars 2011 à 16:24 +0100, fakessh @ a écrit : > I use and bind rndc and dlv isc for dnssec > my zone config like

Re: rndc-key has expired

2011-03-23 Thread fakessh @
I use and bind rndc and dlv isc for dnssec my zone config like this zone "renelacroute.fr" { type master; file "/var/named/renelacroute.fr.hosts"; auto-dnssec maintain; update-policy local; key-directory "/var/named/keys/"; allow-transfer { 213.2

Re: rndc-key has expired

2011-03-23 Thread Eivind Olsen
> I edit the file named.conf > modification > update-policy { > grant * self * A TXT; > }; > to update-policy local; > it seems more logical. > but I'm still stuck on the validation of isc dlv. the script tells me > lost keys Which script? What exactly does it say? I'm guessing you mi

Re: rndc-key has expired

2011-03-22 Thread fakessh @
+0100, fakessh @ a écrit : > > hi bind guru > > > > > > It appears after the log that my signature rndc-key has expired. how to > > update it > > ___ > > bind-users mailing l

Re: rndc-key has expired

2011-03-22 Thread fakessh @
I changed options update-policy { grant fakessh.eu. name fakessh.eu. A TXT; }; since update-policy { grant * self * A TXT; }; Le mardi 22 mars 2011 à 14:59 +0100, fakessh @ a écrit : > hi bind guru > > > It appears after the log that my signature rndc-key

rndc-key has expired

2011-03-22 Thread fakessh @
hi bind guru It appears after the log that my signature rndc-key has expired. how to update it -- gpg --keyserver pgp.mit.edu --recv-key 092164A7 http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x092164A7 signature.asc Description: Ceci est une partie de message numériquement si