Re: Breaking trusted chain in dnssec

2016-07-13 Thread Tony Finch
Georg Kahest wrote: > On 07/13/2016 03:16 PM, Mark Andrews wrote: > > > > You have a delegation without a DS record. > > Or have a DS record without actual dnskey/rrsig records in the > delegated zone. Be aware that these are very different things! Mark's suggestion

Re: Breaking trusted chain in dnssec

2016-07-13 Thread Warren Kumari
Or nsec3 with opt-out? The question is unclear... W On Wednesday, July 13, 2016, Tony Finch wrote: > rams > wrote: > > > Is any one explain how to break trusted chain in dnssec with example how > to > > create zone or data with trusted chain

Re: Breaking trusted chain in dnssec

2016-07-13 Thread Georg Kahest
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 07/13/2016 03:16 PM, Mark Andrews wrote: > > In message >

Re: Breaking trusted chain in dnssec

2016-07-13 Thread Mark Andrews
In message

Re: Breaking trusted chain in dnssec

2016-07-13 Thread Tony Finch
rams wrote: > Is any one explain how to break trusted chain in dnssec with example how to > create zone or data with trusted chain break. Create a delegation without a DS record. Tony. -- f.anthony.n.finch http://dotat.at/ - I xn--zr8h punycode Lundy,

Breaking trusted chain in dnssec

2016-07-13 Thread rams
Greetings...! Is any one explain how to break trusted chain in dnssec with example how to create zone or data with trusted chain break. Thanks & Regards, ramesh ___ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this