Re: .IN Domain is DNSSEC enabled or not

2012-01-06 Thread Laurent Bauer
registry will soon be ready to accept DS : http://www.registry.in/DNSSEC_Deployment You might want to ask your registrar(s) if they plan to implement DNSSEC with the .in registry. Regards, Laurent Bauer ___ Please visit https://lists.isc.org/

SERVFAIL on a CNAME, but NOERROR when querying the CNAME itself

2011-06-30 Thread Laurent Bauer
Hello, I have a problem resolving "manage.logicboxes.com" with bind. I tried versions 9.7.3, 9.7.1-P2 and 9.6-ESV-R1, all of them return a SERVFAIL with a pretty long query time : ; <<>> DiG 9.7.1-P2 <<>> manage.logicboxes.com ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode:

Re: BIND error: opcode: QUERY, status: SERVFAIL

2011-04-27 Thread Laurent Bauer
On 27/04/2011 15:03, Karl Auer wrote: > On Wed, 2011-04-27 at 17:45 +0530, kshitij mali wrote: >> we are unable to lookup the domain "goelexports.com" >> ;; ->>HEADER<<- opcode: QUERY, status: SERVFAIL, id: 63082 > > A trace shows the likely problem: > > dns2-rz-ap:[log]$ dig +trace goelexports.c

Re: inconsistency dnssec debuguers response and writing conseil for new areas zone

2011-03-01 Thread Laurent Bauer
On 28/02/2011 23:35, fakessh @ wrote: >> This is not handled yet. The .FR zone has been signed since september >> 2010, but submitting DS for child zones will be supported later this year. >> See http://operations.afnic.fr for more information. >> > thank you for taking the trouble to answer me.

Re: inconsistency dnssec debuguers response and writing conseil for new areas zone

2011-02-28 Thread Laurent Bauer
Eivind Olsen wrote: Well, I see a few different errors for that domain: I don't see any DS records for your domain when I query the fr. > nameservers. I don't know how it's handled in that TLD but I guess > you somehow need to tell your registrar about your KSK, so they can put in the correc

Re: Wrong names for NS and glue records not in the child zone

2010-12-20 Thread Laurent Bauer
On 20/12/2010 13:50, Kalman Feher wrote: >> The registry NS return an authority section like : >> > domain.tld. IN NS ns1.domain.tld. >> > domain.tld. IN NS ns2.domain.tld. >> > and an additional section with these glue records. >> > >> > The delegation should be : >> > domain.tld. IN NS ns1

Wrong names for NS and glue records not in the child zone

2010-12-20 Thread Laurent Bauer
Hello, We (my company) are registrar for a domain name which is delegated to our client NS. Our client wanted to change the NS records (just the names, same IP addresses) but the registry put the wrong names and created glue records instead. Obviously the glue records are not present in th